Active Directory Administration - Fujitsu SPARC EnterpriseM3000 User Manual

Table of Contents

Advertisement

2.2.4

Active Directory Administration

Active Directory administration is used to specify items relating to Active Directory
clients. The Active Directory server, loading of server certificate, group name,
privileges, user domain, log, DNS locator query, and so on are set. In the Active
Directory server, the XSCF user information is managed.
Note – This section does not cover Active Directory configuration and
administration. An administrator who is familiar with Active Directory should
perform the Active Directory design.
TABLE 2-7
TABLE 2-7
Term
Active
Directory
User domain
DNS locator
query
Active Directory provides both authentication of user credentials and authorization
of the user access level to networked resources. Active Directory uses authentication
to verify the identity of users before they can access system resources, and to grant
specific access privileges to users in order to control their rights to access networked
resources.
User privileges are either configured on XSCF or learned from a server based on
each user's group membership in a network domain. A user can belong to more than
one group. User domain is the authentication domain used to authenticate a user.
Active Directory authenticates users in the order in which the users' domains are
configured.
Once authenticated, user privileges can be determined in the following ways:
In the simplest case, user's privileges are determined directly through the Active
Directory configuration on the XSCF. There is a defaultrole parameter for Active
Directory. If this parameter is configured or set, all users authenticated via Active
Directory are assigned privileges set in this parameter. Setting up users in an
Active Directory server requires only a password with no regard to group
membership.
lists terms used in Active Directory Administration.
Active Directory
Administration Terms
Description
Active Directory is a distributed directory service from Microsoft
Corporation.
Like an LDAP directory service, it is used to authenticate users.
User domain is the authentication domain used to authenticate a user.
The query is used to query DNS server to determine the Active Directory
server to use for user authentication.
Chapter 2
Setting Up XSCF
2-49

Advertisement

Table of Contents
loading

Table of Contents