User guide

B-3
Appendix B – NDS Login Account Requirements
Establishing an NDS Login Account
When the Server Components are loaded for the first time, or
if an NDS login account has not been assigned, the Server
Components will attempt to login to the NDS tree using
CN=Guest. If this login attempt fails, the Server Components
will attempt to login using CN=DiscPort. Both attempts are
initiated from the server's NDS context and no passwords are
included. If both login attempts are unsuccessful, the Server
Components will be granted only the access rights equal to
[Public].
Typically, [Public] will not have all of the needed NDS login
reqquirements. But it is typical to grant [Public] the rights
needed to browse the NDS tree from DiscView and establish
an NDS login account for the Server Components. If this basic
right is not granted to [Public], an NDS login account must be
established without browsing the NDS tree.
The recommended solution is to create a CN=DiscPort user
in the server's context and assign it the required rights de-
fined above. Restricting the account to the Server Compo-
nents can be accomplished in the traditional way by requiring
a password, or, as an alternative, the account's network ad-
dress can be restricted to only the server's internal address.
The alternate approach requires no password on the account.
After the account is created, reload the Server Components,
or force the Server Components to login by configuring the
Server Components as defined below.
If an account with the required rights already exists, the
Server Components can be configured to use this account from
the Fileserver Configuration dialog in DiscView.
The Fileserver Configuration
dialog