Administrator Guide

Filter Open Files
You can lter open les by le name, user, protocol, or maximum number of open les to display.
1. Click the Storage view and select a FluidFS cluster.
2. Click the File System tab, select Client Activity.
3. In the Client Activity tab navigation pane, select Open Files.
4. The Open Files dialog box appears.
5. In the top portion of the dialog box, ll in one or more of the elds listed (File name, User, Protocol, or Number of Files to
Display).
6. Click Apply Filter/Refresh. A list of open les is displayed.
Managing LDAP
In environments that use Lightweight Directory Access Protocol (LDAP), you can congure the FluidFS cluster to authenticate UNIX
and Linux clients using LDAP for access to NFS exports. The LDAP database can be provided by either an LDAP server or Active
Directory.
The FluidFS clusters supports the following LDAP congurations:
Anonymous LDAP: The connection from the FluidFS cluster to the LDAP servers is not authenticated. The data is sent in plain
text.
Authenticated LDAP: The connection from the FluidFS cluster to the LDAP servers is authenticated using a user name and
password. The data is sent in plain text.
LDAP over TLS/SSL: The connection from the FluidFS cluster to the LDAP servers is authenticated and encrypted. To validate
the certicate used by the LDAP server, you must export the SSL certicate from the LDAP server and upload it to the FluidFS
cluster.
Reduce the Number of Subtrees for Searches
FluidFS allows you to narrow the number of subtrees in an LDAP tree used for searching.
1. Click the Storage view and select a FluidFS cluster.
2. Click the File System tab, expand Environment and select Authentication.
3. In the right pane, click the Directory Services tab.
4. Click Congure External User Database. The Edit External User Database dialog box appears.
5. Select the LDAP Filters radio button, and select Enabled for the LDAP Filtering eld.
6. Enter the LDAP name to be used for searching in the Filtered Branches eld and click Add.
7. To use LDAP on Active Directory extended schema, select Enabled for the Extended Schema eld.
8. To use LDAP over TLS to encrypt all communications with the LDAP server, select Enabled for the LDAP over TLS eld.
9. To install an LDAP certicate, select Enabled for the Install LDAP Certicate eld, enter an LDAP certicate and click Upload
Certicate.
10. To use non-anonymous LDAP bind, select Enabled for the Non-Anonymous LDAP bind eld, enter the Bind DN and Bind
Password
.
11. Click OK.
Enable LDAP Authentication
Congure the FluidFS cluster to communicate with the LDAP directory service. Adding multiple LDAP servers ensures continued
authentication of users in the event of an LDAP server failure. If the FluidFS cluster cannot establish contact with the preferred
server, it will attempt to connect to the remaining servers in order.
1. Click the Storage view and select a FluidFS cluster.
2. In the File System pane, expand Environment and select Authentication.
3. In the Authentication pane, click the Directory Services tab.
548
FluidFS Account Management and Authentication