Administrator Guide

To indicate that Active Directory provides the LDAP database, select the Use LDAP on Active Directory Extended Schema
check box.
To indicate that an LDAP server provides the LDAP database, clear the Use LDAP on Active Directory Extended Schema
check box.
6. Click OK.
Enable or Disable Authentication for the LDAP Connection
Enable authentication for the connection from the FluidFS cluster to the LDAP server if the LDAP server requires authentication.
1. Click the Storage view and select a FluidFS cluster.
2. In the File System pane, expand Environment and select Authentication.
3. In the Authentication pane, click the Directory Services tab.
4. Click Congure External User Database in the NFS User Repository section. The Edit External User Database dialog box
appears.
5. Enable or disable authentication for the LDAP connection.
To enable authentication for the LDAP connection, select the Non-Anonymous LDAP bind check box. Then, type the LDAP
bind distinguished name used to authenticate the connection in the Bind DN eld and type the LDAP bind password in the
Bind Password eld.
To disable authentication for the LDAP connection, clear the Use Non-Anonymous LDAP bind check box.
6. Click OK.
Enable or Disable TLS Encryption for the LDAP Connection
Enable TLS encryption for the connection from the FluidFS cluster to the LDAP server to avoid sending data in plain text. To validate
the certicate used by the LDAP server, you must export the LDAP SSL certicate and upload it to the FluidFS cluster.
1. Click the Storage view and select a FluidFS cluster.
2. In the File System pane, expand Environment and select Authentication.
3. In the Authentication pane, click the Directory Services tab.
4. Click Congure External User Database in the NFS User Repository section. The Edit External User Database dialog box
appears.
5. Enable or disable TLS encryption for the LDAP connection.
To enable TLS encryption for the LDAP connection, select the LDAP over TLS check box.
To disable TLS encryption for the LDAP connection, clear the LDAP over TLS check box.
6. If TLS encryption is enabled, enable or disable LDAP certicate validation.
To enable LDAP certicate validation, select the Install LDAP Certicate check box. Then, click Upload Certicate and
browse to and select the LDAP SSL certicate to upload to the FluidFS cluster.
To disable LDAP certicate validation, clear the Install LDAP Certicate check box.
7. Click OK.
Disable LDAP Authentication
Disable LDAP authentication if you no longer need the FluidFS cluster to communicate with the directory service.
1. Click the Storage view and select a FluidFS cluster.
2. In the File System pane, expand Environment and select Authentication.
3. In the Authentication pane, click the Directory Services tab.
4. Click Congure External User Database in the NFS User Repository section. The Edit External User Database dialog box
appears.
5. Select None.
6. Click OK.
550
FluidFS Account Management and Authentication