Users Guide

4. DNS
5. DNS Active Directory DNS
iDRAC
Kerberos Keytab
SSO iDRAC Windows Kerberos Kerberos iDRAC
Kerberos Windows Server Kerberos Windows Server Active Directory 安全
ktpass CD/DVD Microsoft 主体 (SPN)
MIT Kerberos keytab (KDC)
keytab KDC ktpass Kerberos UNIX
使 Windows Server Kerberos KDC ktpass 程序访 Microsoft
technet.microsoft.com/en-us/library/cc779157(WS.10).aspx
keytab Active Directory ktpass -mapuser 使
生成 keytab 使 iDRAC DNS
使 ktpass keytab
1. iDRAC Active Directory 制器Active Directory ktpass
2. 使 ktpass Kerberos keytab
C:\> ktpass.exe -princ HTTP/idrac7name.domainname.com@DOMAINNAME.COM -mapuser
DOMAINNAME\username -mapOp set -crypto AES256-SHA1 -ptype KRB5_NT_PRINCIPAL -pass
[password] -out c:\krbkeytab
AES256-SHA1 KRB5_NT_PRINCIPAL帐户
使 AES 256
: iDRACname 使名使
3. 命令
C:\>setspn -a HTTP/iDRACname.domainname.com username
keytab
: 发现 keytab iDRAC 有任 keytab 再次
keytab
Active Directory
Active Directory SSO
1. Active Directory
2. 访可能
3. 使
4. SSO
5.
访限,访
iDRAC Active Directory on page 132
Active Directory iDRAC SSO
Active Directory SSO iDRAC
Active Directory 可以 Active Directory SSO iDRAC
iDRAC 139