Owner's Manual

Using the CMC Directory Service 303
To upload the keytab file:
1
Navigate to the
User Authentication
tab
Directory Services
subtab.
Ensure that
Microsoft Active Directory Standard
or
Extended Schema
is
selected. If not, select your preference and click
Apply
.
2
Click
Browse
on the
Kerberos Keytab Upload
section, navigate to the
folder where the keytab file is saved and click
Upload
.
When the upload is complete, a message box is displayed indicating a
successful or failed upload.
Enabling Single Sign-On
1
Click
Chassis Management Controller Network Security
tab
Active
Directory
Configure Active Directory
.
The
Active Directory Configuration and Management
page is displayed.
2
On the
Active Directory Configuration and Management
page, select:
Single Sign-On — this option enables you to log in to CMC using the
cached credentials obtained when you log in to the Active Directory.
NOTE: All command line out-of-band interfaces including secure shell (SSH),
Telnet, Serial, and remote RACADM remain unchanged for this option.
3
Scroll to the bottom of the page and click
Apply
.
You can test the Active Directory using Kerberos authentication by using the
CLI command test feature:
testfeature -f adkrb -u <user>@<domain>
where user is a valid Active Directory user account.
A command success indicates that CMC is able to acquire Kerberos
credentials and access the user's Active Directory account. If the command is
not successful, resolve the error and repeat the command. For more
information, see RACADM Command Line Reference Guide for iDRAC6 and
CMC on support.dell.com/manuals.