Kerberos properties table – HP XP P9500 Storage User Manual
Page 180
This window is displayed if you select Kerberos from the External Authentication window.
Kerberos Properties table
Description
Item
Displays whether to search for the Kerberos server using the information registered
in the SRV records in the DNS server.
DNS Lookup
•
Enable: Performs the search using information registered in the SRV records in
the DNS server.
•
Disable: Performs the search using the host name and the port number.
Displays the default realm name.
Realm Name
Displays the name of the Kerberos server.
Primary Host Name
Displays the port number of the Kerberos server.
Primary Port Number
Displays the acceptable range of time difference between the SVP and the Kerberos
server.
Clock Skew
Displays the number of seconds before connection to the Kerberos server times out.
Timeout
Displays the name of the secondary Kerberos server.
Secondary Host Name
Displays the port number of the secondary Kerberos server.
Secondary Port Number
Displays the LDAP protocol to use.
External User Group Mapping -
Authentication Protocol
Displays the port number of the LDAP server.
External User Group Mapping -
Primary Port Number
Specify a base DN to search for users to authenticate.
External User Group Mapping -
Base DN
Available characters: Alphanumeric characters (ASCII characters) and all symbols.
•
Hierarchical model
Specify a DN of hierarchy that includes all the targeted users for searching.
•
Flat model
Specify a DN of hierarchy that is one level up of the targeted user for searching.
You can enter alphanumeric characters and all symbols. Note, however, that when
you enter symbols like the following, you need to use a backslash to escape for
each symbol:
+ ; , < = > \ / "
In some cases, you may need to use a backslash and an ASCII character to escape.
•
\ -> \5c (hexadecimal)
•
/ -> \2f (hexadecimal)
•
"-> \22 (hexadecimal)
Search for a user by specifying a DN
External User Group Mapping -
Search User's DN
Available characters: Alphanumeric characters (ASCII characters) and all symbols.
If you specify sAMAccountName in External User Group Mapping - User Name
Attribute, or if you select Enable in External User Group Mapping, this item must be
specified.
If you select Disable in External User Group Mapping, this item is disabled.
You can enter alphanumeric characters and all symbols. Note, however, that when
you enter symbols like the following, you need to use a backslash to escape for
each symbol:
+ ; , < = > \ / "
180 Remote Web Console GUI reference (main window)