7 Installing and Configuring Directory Services

You can install and configure the iLO 2 MP directory services to leverage the benefits of a single point of administration for the iLO 2 MP user accounts.

This chapter provides information on how to install and configure iLO 2 MP directory services.

This chapter addresses the following topics:

“Directory Services” (page 147)

“Directory Services for Active Directory” (page 152)

“Directory Services for eDirectory” (page 163)

“User Login Using Directory Services” (page 172)

“Certificate Services” (page 173)

“Directory-Enabled Remote Management” (page 173)

“Directory Services Schema (LDAP)” (page 179)

Directory Services

The following are benefits of directory integration:

Scalability

Leverage the directory to support thousands of users on

 

thousands of iLO 2s.

Security

Robust user password policies are inherited from the

 

directory. User password complexity, rotation frequency,

 

and expiration are policy examples.

Role-based administration

You can create roles (for instance, clerical, remote control

 

of the host, complete control), and associate users or user

 

groups with those roles. When you change a single role,

 

the change applies to all users and the iLO 2 MP devices

 

associated with that role.

Single point of administration

You can use native administrative tools, like Microsoft

 

Management Console (MMC) and ConsoleOne, to

 

administer the iLO 2 MP users.

Immediacy

A single change in the directory rolls out immediately to

 

associated iLO 2 MPs eliminating the need to script this

 

process.

Reuse of username and password

You can use existing user accounts and passwords in the

 

directory without having to record or remember a new set

 

of credentials for the iLO 2 MP.

Flexibility

You can create a single role for a single user on a single

 

iLO 2 MP; you can create a single role for multiple users

 

on multiple iLO 2 MPs; or you can use a combination of

 

roles to best fit your enterprise.

Compatibility

The iLO 2 MP directory integration applies to the iLO 2

 

MP products and supports the popular directories Active

 

Directory and eDirectory.

Standards

The iLO 2 MP directory support builds on the LDAP 2.0

 

standard for secure directory access.

Directory Services 147

Page 147
Image 147
HP Integrity iLO 2 MP 5991-6005 manual Directory Services