Owner's Manual

Using the CMC With Microsoft Active Directory 151
6
Add Group1 as Members in Association Object 1 (A01), Priv1 as Privilege
Objects in A01, and RAC1, RAC2 as RAC Devices in A01.
7
Add User3 as Members in Association Object 2 (A02), Priv2 as Privilege
Objects in A02, and RAC2 as RAC Devices in A02.
Configuring Extended Schema Active Directory to Access Your CMC
Before using Active Directory to access your CMC, configure the Active
Directory software and the CMC:
1
Extend the Active Directory schema (see "Extending the Active Directory
Schema" on page 151).
2
Extend the Active Directory Users and Computers Snap-In (see "Installing
the Dell Extension to the Active Directory Users and Computers Snap-In"
on page 157).
3
Add CMC users and their privileges to Active Directory (see "Adding
CMC Users and Privileges to Active Directory" on page 158).
4
Enable SSL on each of your domain controllers.
5
Configure the CMC Active Directory properties using either the CMC
Web interface or the RACADM (see "Configuring the CMC With
Extended Schema Active Directory and the Web Interface" on page 161 or
"Configuring the CMC With Extended Schema Active Directory and
RACADM" on page 163).
Extending the Active Directory Schema
Extending your Active Directory schema adds a Dell organizational unit,
schema classes and attributes, and example privileges and association objects
to the Active Directory schema. Before you extend the schema, ensure that
you have Schema Admin privilege on the Schema Master Flexible Single
Master Operation (FSMO) Role Owner of the domain forest.
You can extend your schema using one of the following methods:
Dell Schema Extender utility
LDIF script file
If you use the LDIF script file, the Dell organizational unit will not be added
to the schema.