Installation Manual

Configuration process overview
1. Install Active Directory and DNS.
2. Install the root CA.
3. Verify that version 2.0 or later of the .NET Framework is installed.
The iLO LDAP component requires this software.
The LDAP component does not work with a Windows Server Core installation.
4. Install the latest Directories Support for ProLiant Management Processors software.
5. Extend the schema by using the Schema Extender.
6. Install the Hewlett Packard Enterprise LDAP component snap-ins.
7. Create the Hewlett Packard Enterprise device and role.
8. Log in to iLO and enter the directory settings and directory user contexts on the
AdministrationSecurityDirectory page.
9. Verify that the correct DNS server is specified on the iLO network settings IPv4 or IPv6 page.
Snap-in installation and initialization for Active Directory
1. Run the snap-in installer.
2. Configure the directory service to have the appropriate objects and relationships for iLO
management.
At a minimum, you must create the following:
One role object that contains one or more users and one or more iLO objects
One iLO object that corresponds to each iLO management processor that uses the
directory
a. Use the management snap-ins from Hewlett Packard Enterprise to create the iLO role
and user role objects.
b. Use the management snap-ins from Hewlett Packard Enterprise to build associations
between the iLO object and the role objects.
c. Point the iLO object to the admin and user role objects. (Admin and user roles
automatically point back to the iLO object.)
More information
Managing roles and objects with the Active Directory snap-ins
Directory services objects
Creating and configuring directory objects for use with iLO in Active Directory
The following example describes how to set up roles and Hewlett Packard Enterprise devices in
an enterprise directory with the domain testdomain.local. This domain consists of two
organizational units, Roles and iLOs. The steps in this section are completed by using the Hewlett
Packard Enterprise-provided Active Directory Users and Computers snap-ins.
For more information about using the Active Directory snap-ins, see “Managing roles and objects
with the Active Directory snap-ins” (page 291).
Create the iLOs organizational unit and add LOM objects
1. Create an organizational unit called iLOs that contains the iLO devices managed by the
domain.
2. Right-click the iLOs organizational unit in the testdomain.local domain, and then select
New HP Object.
3. Select Device in the Create New Object dialog box.
HPE Extended Schema directory authentication 295