HP XP P9500 Storage User Manual
Page 195
Description
Item
You can specify ASCII code characters, hyphens (-), and periods (.).
If you select Enable in DNS Lookup, this item is disabled.
Specify a port number of the Kerberos server.
Port Number
If you select Enable in DNS Lookup, this item is disabled.
Specify an acceptable range of time difference between the SVP and the Kerberos server.
Clock Skew
Specify the number of seconds before connection to the Kerberos server times out.
Timeout
Specify whether to use a secondary Kerberos server.
Secondary Server
•
Enable: Uses the secondary server.
•
Disable: Does not use the secondary server.
If you specify Enable in DNS Lookup, this item is disabled.
Specify a name of the secondary Kerberos server.
Secondary Server - Host
Name
You can specify ASCII code characters, hyphens (-), and periods (.).
If you select Enable in DNS Lookup, or if you select Disable in Secondary Server, this
item is disabled.
Specify a port number of the secondary Kerberos server.
Secondary Server - Port
Number
If you select Enable in DNS Lookup, or if you select Disable in Secondary Server, this
item is disabled.
Specify whether to connect an authentication server to an authorization server.
External User Group
Mapping
•
Enable: Connects an authentication server to an authorization server.
•
Disable: Does not connect an authentication server to an authorization server.
Specify a certificate file. Click Browse to find the file.
External User Group
Mapping - Certificate File
Name
If you select Disable in External User Group Mapping, this item is disabled.
Specify an LDAP protocol to use. Available protocols are:
External User Group
Mapping - Authentication
Protocol
•
LDAP over SSL/TLS
•
STARTTLS
If you select Enable in DNS Lookup, you cannot select LDAP over SSL/TLS.
If you select Disable in External User Group Mapping, this item is disabled.
Specify a port number of the LDAP server.
External User Group
Mapping - Primary Port
Number
If you select Enable in DNS Lookup, or if you select Disable in External User Group
Mapping, this item is disabled.
Specify a port number of the secondary LDAP server.
External User Group
Mapping - Secondary Port
Number
If you select Disable in Secondary Server, Enable in DNS Lookup, or External User Group
Mapping fields, this item is disabled.
Specify a base DN to search for users to authenticate.
External User Group
Mapping - Base DN
Available characters: Alphanumeric characters (ASCII characters) and all symbols.
•
Hierarchical model
Specify a DN of hierarchy that includes all the targeted users for searching.
•
Flat model
Specify a DN of hierarchy that is one level up of the targeted user for searching.
You can enter alphanumeric characters and all symbols. Note, however, that when you
enter symbols like the following, you need to use a backslash to escape for each symbol:
+ ; , < = > \ / "
Setup Server for Kerberos 195