Add an authentication directory service

You can use an external authentication directory service (also called an enterprise directory or authentication login domain) to authenticate users logging in to the appliance instead of maintaining individual local login accounts.


[NOTE: ]

NOTE: The CloudSystem Portal is configured automatically based on the default directory set in the CloudSystem Console. The following limitations apply to the CloudSystem Portal.

  • You can add up to four directories, but only the default directory is used by the CloudSystem Portal. You can change the default directory by clicking the Edit icon in the Security panel. See Set an authentication directory service as the default directory.

  • You can add multiple directory servers, but the first server that you configure for the directory service is used by the CloudSystem Portal. Additional servers are ignored. You can change the server used for a directory by clicking the Edit icon in the Security panel. See Change the authentication directory service settings.


Prerequisites 

  • Minimum required privileges: Infrastructure administrator.

  • The authentication directory service must be configured.

  • Obtain an X509 certificate from the directory service provider. This certificate ensures the integrity of communication between the appliance and the directory service.

Adding an authentication directory service

  1. From the main menu, select Settings.

  2. Click the Edit icon in the Security area.

  3. On the Edit Security screen, under Directories, click Add Directory.

  4. Enter the data requested on the screen. See Add Directory screen details.

  5. Click Add a directory server.

  6. Enter the data requested on the screen. See Add Directory server screen details.

  7. Click Add to add the server and return to the Add Directory screen.

  8. Click Add to add the authentication directory service or click Add+ to add more directory services.

Recommended next step: Add a group with directory-based authentication.

See also