This quick start describes how to add an authentication directory service (also called an enterprise directory or authentication login domain) and then provide single sign-on authentication for groups defined in the authentication directory service. Each user in a group is assigned the same role (for example, Infrastructure administrator).
An example of an authentication directory service is a corporate directory that uses LDAP (Lightweight Directory Access Protocol).
This scenario describes how to add an OpenLDAP authentication directory service and add a group from that directory service.
-
Minimum required privileges: Infrastructure administrator.
-
The authentication directory service must be configured.
-
You must obtain an X509 certificate from the directory service provider. This certificate ensures the integrity of communication between the appliance and the directory service.
-
A user in the directory service must have OpenLDAP read privileges (
rscdx) so that HPE OneView can read search results.
Process
| Resource | Task | Description |
|---|---|---|
| Authentication directory |
|
|
| Users and groups |
|
|
This scenario describes how to add a Microsoft Active Directory authentication directory service and add a group from that directory service.
-
Minimum required privileges: Infrastructure administrator.
-
The authentication directory service must be configured.
-
You must obtain an X509 certificate from the directory service provider. This certificate ensures the integrity of communication between the appliance and the directory service.
Process
| Resource | Task | Description |
|---|---|---|
| Authentication directory |
|
|
| Users and groups |
|
|