Administrator Guide

(Commas and plus sign are escaped
except for the comma separating the
RDNs.)
In the Storage Center Hostname field, type the fully qualified domain name (FQDN) of the Storage Center.
For a single-controller Storage Center system, this is the fully qualified host name for the controller IP address.
For a dual-controller Storage Center system, this is the fully qualified host name for the management IP address.
In the LDAP Domain field, type the LDAP domain to search.
In the Authentication Bind DN field, type the Distinguished Name or User Principal Name of the user that the Storage Center
uses to connect to and search the LDAP server.
In the Authentication Bind Password field, type the password for the authentication bind Distinguished Name.
7. (Optional) Click Test Server to verify that the Storage Center can communicate with the specified directory servers using the
selected protocol.
8. (Optional) If Transport Layer Security (TLS) is enabled, upload a Certificate Authority PEM file.
a) Click Upload Certificate Authority PEM.
b) Browse to the location of the PEM file, select the file, and click Select. The Upload TLS Certificate dialog box opens.
NOTE: If you select the wrong PEM file, click Upload Certificate in the Upload TLS Certificate dialog box to select
a new file.
c) Click OK to upload the certificate.
9. Click Next. The Kerberos Settings page opens.
10. (Optional) Select the Enabled checkbox to enable Kerberos authentication.
11. To change any of the Kerberos settings, clear the Auto-Discover checkbox, and then type a new value into that field.
Kerberos Domain Realm: Kerberos domain realm to authenticate against. In Windows networks, this is the domain name in
uppercase characters.
KDC Hostname or IP Address: Fully qualified domain name (FQDN) or IP address of the Key Distribution Center (KDC) to which
Storage Center will connect.
Password Renew Rate (Days): Number of days before the keytab is regenerated. The default value is 0, which equates to a
password renew rate of 14 days.
12. Click Next.
The Join Domain page opens.
13. Type the user name and password of a domain administrator.
14. Click Next.
The Summary page opens.
15. If you want to change any setting, click Back to return to the previous page.
16. Click Finish.
17. Click OK.
Managing Directory Service Users
Directory service users can be individually granted access to a Storage Center.
NOTE: For user interface reference information, click Help.
Grant Access to a Directory User
Grant access to a directory user to allow the user to log in to the Storage Center using his or her directory credentials.
Prerequisites
The Storage Center must be configured to authenticate users with an external directory service.
Steps
1. If the Storage Manager Client is connected to a Data Collector, select a Storage Center from the Storage view.
2. In the Summary tab, click Edit Settings.
The Edit Storage Center Settings dialog box opens.
3. Click the Users and User Groups tab.
Storage Center Maintenance
233