Users Guide

Related links
Prerequisites for Active Directory Single Sign-On or smart card login
Configuring Active Directory with Standard schema using iDRAC web interface
Configuring Active Directory with Standard schema using RACADM
Configuring Active Directory with Extended schema using iDRAC web interface
Configuring Active Directory with Extended schema using RACADM
Configuring iDRAC SSO login for Active Directory users using web interface
To configure iDRAC for Active Directory SSO login:
NOTE: For information about the options, see the
iDRAC Online Help
.
1. Verify whether the iDRAC DNS name matches the iDRAC Fully Qualified Domain Name. To do this, in iDRAC Web interface, go
to OverviewiDRAC SettingsNetworkNetwork and see the DNS Domain Name property.
2. While configuring Active Directory to setup a user account based on standard schema or extended schema, perform the
following two additional steps to configure SSO:
Upload the keytab file on the Active Directory Configuration and Management Step 1 of 4 page.
Select Enable Single Sign-On option on the Active Directory Configuration and Management Step 2 of 4 page.
Configuring iDRAC SSO login for Active Directory users using RACADM
To enable SSO, complete the steps to configure Active Directory, and run the following command:
racadm set iDRAC.ActiveDirectory.SSOEnable 1
Configuring iDRAC smart card login for local users
To configure iDRAC local user for smart card login:
1. Upload the smart card user certificate and trusted CA certificate to iDRAC.
2. Enable smart card login.
Related links
Obtaining certificates
Uploading smart card user certificate
Enabling or disabling smart card login
Uploading smart card user certificate
Before you upload the user certificate, make sure that the user certificate from the smart card vendor is exported in Base64 format.
SHA-2 certificates are also supported.
Related links
Obtaining certificates
Uploading smart card user certificate using web interface
To upload smart card user certificate:
1. In iDRAC Web interface, go to OverviewiDRAC SettingsNetworkUser AuthenticationLocal Users.
The Users page is displayed.
2. In the User ID column, click a user ID number.
The Users Main Menu page is displayed.
3. Under Smart Card Configurations, select Upload User Certificate and click Next.
The User Certificate Upload page is displayed.
4. Browse and select the Base64 user certificate, and click Apply.
141