Dell Version 7.3 manual Using The Active Directory Login, Single Sign-On

Page 28

NOTE: When you launch Server Administrator using either Mozilla Firefox version 3.0 and 3.5 or Microsoft Internet Explorer version 7.0 or 8.0, an intermediate warning page may appear displaying a problem with security certificate. To ensure system security, it is recommended that you generate a new X.509 certificate, reuse an existing X.509 certificate, or import a root certificate or certificate chain from a Certification Authority (CA). To avoid encountering such warning messages about the certificate, the certificate used must be from a trusted CA. For more information about X.509 Certificate Management, see X.509 Certificate Management.

NOTE: To ensure system security, it is recommended that you import a root certificate or certificate chain from a Certification Authority (CA). For more information, see the VMware documentation.

NOTE: If the certificate authority on the managed system is valid and if the Server Administrator web server still reports an untrusted certificate error, you can still make the managed system’s CA as trusted by using the certutil.exe file. For information about accessing this .exe file, see your operating system documentation. On supported Windows operating systems, you can also use the certificates snap in option to import certificates.

Using The Active Directory Login

You should select Active Directory Login to log in using the Dell Extended Schema Solution in Active Directory.

This solution enables you to provide access to Server Administrator; allowing you to add/control Server Administrator users and privileges to existing users in your Active Directory software. For more information, seev“Using Microsoft Active Directory” in the Dell OpenManage Installation and Security User's Guide at dell.com/support/manuals.

Single Sign-On

The Single Sign-On option in Windows operating systems enables all logged in users to bypass the login page and access the Server Administrator Web application by clicking the Dell OpenManage Server Administrator icon on your desktop.

NOTE: For more information about Single Sign-On, see the Knowledge Base article at support.microsoft.com/ default.aspx?scid=kb;en-us;Q258063.

For local machine access, you must have an account on the machine with the appropriate privileges (User, Power User, or Administrator). Other users are authenticated against the Microsoft Active Directory. To launch Server Administrator using Single Sign-On authentication against Microsoft Active Directory, the following parameters must also be passed:

authType=ntlm&application=[plugin name]

where plugin name = omsa, ita, and so on. For example,

https://localhost:1311/?authType=ntlm&application=omsa

To launch Server Administrator using Single Sign-On authentication against the local machine user accounts, the following parameters must also be passed:

authType=ntlm&application=[plugin name]&locallogin=true

Where plugin name = omsa, ita, and so on.

For example,

https://localhost:1311/?authType=ntlm&application=omsa&locallogin=true

Server Administrator has also been extended to allow other products (such as Dell OpenManage IT Assistant) to directly access Server Administrator Web pages without going through the login page (if you are currently logged in and have the appropriate privileges).

28

Image 28
Contents Dell OpenManage Server Administrator Version 7.3 Users Guide Dell Inc Contents Server Administrator Services Working With Remote Access ControllerServer Administrator Logs Setting Alert ActionsTroubleshooting Frequently Asked QuestionsInstallation Updating Individual System Components IntroductionStorage Management Service Instrumentation ServiceRemote Access Controller What Is New In This ReleaseSystems Management Standards Availability Availability On Supported Operating SystemsOther Documents You May Need Server Administrator HomeOperating System Accessing Documents From Dell Support Site Obtaining Technical Assistance Contacting Dell Serviceability ToolsOMConnectionsEnterpriseSystemsManagement Setup And Administration Role-Based Access ControlUser Privilege Access Description Level Type View Manage Service User Privilege Level Required ViewAuthentication Microsoft Windows AuthenticationVMware ESX Server 4.X Authentication VMware ESXi Server 5.X AuthenticationAssigning User Privileges EncryptionAdding Users To a Domain On Windows Operating Systems Creating Users Creating Users With User Privileges Creating Users With Power User PrivilegesUserName HostName Rights Best Practices While Using The Omarolemap File Select Account is disabled and click OK Configuring The Snmp AgentOpen the Computer Management window Snmp Service Properties window appears Changing The Snmp Community NameSnmp Service Configuration window appears Snmp Agent Access Control ConfigurationEnabling Snmp Set Operations Server Administrator Snmp Agent Install Actions Sever Administrator Snmp Install Actions Enabling Snmp Access From Remote HostsTo configure the Snmp agent To enable VMWare Snmp service, run the following command Page Firewall Configuration Server Administrator Local System Login Using Server AdministratorLogging In And Out Central Web Server Login Click SubmitUsing The Active Directory Login Single Sign-OnEnabling The Use Of Client-Side Scripts On Internet Explorer Enabling The Use Of Client-Side Scripts On Mozilla FirefoxGUI Field Name Sample Server Administrator Home Page Non-Modular System Features Modular System System/Server Module Component Status Indicators Global Navigation BarSystem Tree Action WindowTask Buttons Gauge IndicatorsUnderlined Items Using The Online Help Using The Preferences HomeSetting User And System Preferences Server Administrator Web Server PreferencesManaged System Preferences Click General Settings Secure Port SystemCertificate Management Click X.509 CertificateUsing The Server Administrator Command Line Interface Server Administrator Web Server Action TabsServer Administrator Services Managing Your SystemManaging System/Server Module Tree Objects Server Administrator Home Page System Tree ObjectsModular Enclosure Accessing And Using Chassis Management Controller System/Server Module PropertiesModular Enclosure object Tab Properties Subtab Information Licensing Subtabs Information LicensingSubtabs Hardware Alert Command ShutdownLogs Alert ManagementSession Management Main System Chassis/Main SystemSubtabs Session Main System Chassis/Main System Properties Properties and Setup Subtab Information Setup Subtab BiosBatteries Properties Subtab InformationFirmware FansHardware Performance Intrusion MemoryProperties Subtab Intrusion Properties Subtab MemoryPower Management NetworkPorts Subtab Information PropertiesManagement Subtabs Budget Profiles Power SuppliesAlert Management Properties Subtab Elements Processors Remote AccessAlert Management Subtabs Alert Actions Temperatures Subtab Temperature Probes PropertiesRemovable Flash Media SlotsVoltages SoftwareOperating System Properties Subtab Voltage ProbesGeneral Settings Managing Preferences Home Page Configuration OptionsStorage Server Administrator Subtabs Access Configuration Snmp Configuration PreferencesWorking With Remote Access Controller Modular Enclosure Modular system Server Modules Main SystemRemote Access Device Viewing Basic InformationSystem Main System ChassisIPv4 Address IPv6 AddressVlan ID Click Apply ChangesClick Serial Port Serial Port Configuration window appears Click Apply Changes Click Terminal Mode SettingsConfiguring Remote Access Device Users Additional Configuration For iDRACClick Additional Configuration Setting Platform Event Filter Alerts None Reboot SystemPower Off System Power Cycle SystemSetting Platform Event Alert Destinations Server Administrator Logs Integrated FeaturesServer Administrator Logs Log Window Task ButtonsHardware Log Alert LogMaintaining The Hardware Log StatusCommand Log Setting Alert Actions Example 1 ps -ef /tmp/psout.txt 2&1Setting Alert Action Execute Application In Windows Server BMC/iDRAC Platform Events Filter Alert MessagesEvent Description Troubleshooting Connection Service FailureLogin Failure Scenarios Opt/dell/srvadmin/sbin/dsmomconnsvcdService Name Description Impact of Failure OpenManage Server Administrator ServicesSeverity Dsmsadatamgr Are there other ports users can use apart from 1311? Frequently Asked QuestionsPort ITA communicating with Linux systems