Intel Entry Storage System SS4200-E Active Directory Implementation and Troubleshooting



Similar documents
Windows Vista: Connecting to the wireless network at Hood College

Collax Active Directory

Tool Tip. SyAM Management Utilities and Non-Admin Domain Users

Getting Started Guide

HP Device Manager 4.7

CONFIGURING ACTIVE DIRECTORY IN LIFELINE

How To Install Ctera Agent On A Pc Or Macbook With Acedo (Windows) On A Macbook Or Macintosh (Windows Xp) On An Ubuntu (Windows 7) On Pc Or Ipad

CIFS Permissions Best Practices Nasuni Corporation Natick, MA

IIS, FTP Server and Windows

Enterprise Apple Xserve Wiki and Blog using Active Directory. Table Of Contents. Prerequisites 1. Introduction 1

LDAP Implementation AP561x KVM Switches. All content in this presentation is protected 2008 American Power Conversion Corporation

Configuring Sponsor Authentication

Understanding Windows Server 2003 Networking p. 1 The OSI Model p. 2 Protocol Stacks p. 4 Communication between Stacks p. 13 Microsoft's Network

Univention Corporate Server. Operation of a Samba domain based on Windows NT domain services

Quality Center LDAP Guide

Synology NAS Server Windows ADS FAQ

How to Join QNAP NAS to Microsoft Active Directory (AD)

Active Directory integration with CloudByte ElastiStor

Use QNAP NAS for Backup

How To Use 1Bay 1Bay From Awn.Net On A Pc Or Mac Or Ipad (For Pc Or Ipa) With A Network Box (For Mac) With An Ipad Or Ipod (For Ipad) With The

How to Install the Active Directory Domain Services (AD DS) Role in Windows Server 2008 R2 and Promote a Server to a Domain Controller

User Management Tool 1.5

DeployStudio Server Quick Install

Integrating Mac OS X 10.6 with Active Directory. 1 April 2010

17 April Remote Scan

SCADA Security. Enabling Integrated Windows Authentication For CitectSCADA Web Client. Applies To: CitectSCADA 6.xx and 7.xx VijeoCitect 6.xx and 7.

NNAS-D5 Quick Installation Guide

How To Set Up Egnyte For Netapp Sync For Netapp

Step-by-Step Guide to Setup Instant Messaging (IM) Workspace Datasheet

Wazza s QuickStart 17. Leopard Server - Blogs & Wikis

Introduction. Versions Used Windows Server 2003

HOW TO CONFIGURE SQL SERVER REPORTING SERVICES IN ORDER TO DEPLOY REPORTING SERVICES REPORTS FOR DYNAMICS GP

How-to: Single Sign-On

Parallels Plesk Panel

Chapter 3 Authenticating Users

INUVIKA OVD VIRTUAL DESKTOP ENTERPRISE

HP Device Manager 4.6

Session 17 Windows 7 Professional DNS & Active Directory(Part 2)

User Management Tool 1.6

Integrating LANGuardian with Active Directory

NETASQ ACTIVE DIRECTORY INTEGRATION

Presenter s name here Date of presentation (optional) Windows Security and Domains for Experion

Cloud Services ADM. Agent Deployment Guide

Administration Guide. . All right reserved. For more information about Specops Password Sync and other Specops products, visit

NetIQ Advanced Authentication Framework - MacOS Client

Understand Troubleshooting Methodology

Installation Notes for Outpost Network Security (ONS) version 3.2

Implementing, Managing, and Maintaining a Microsoft Windows Server 2003 Network Infrastructure

MCSE Core exams (Networking) One Client OS Exam. Core Exams (6 Exams Required)

PineApp Surf-SeCure Quick

Active Directory Integration

How To Install And Configure Windows Server 2003 On A Student Computer

Course: WIN310. Student Lab Setup Guide. Summer Microsoft Windows Server 2003 Network Infrastructure (70-291)

Only LDAP-synchronized users can access SAML SSO-enabled web applications. Local end users and applications users cannot access them.

Configuring IBM Cognos Controller 8 to use Single Sign- On

Active Directory Integration

Contents Introduction... 3 Introduction to Active Directory Services... 4 Installing and Configuring Active Directory Services...

Using LDAP Authentication in a PowerCenter Domain

ACS 5.x and later: Integration with Microsoft Active Directory Configuration Example

Dynamic VLAN assignment using RADIUS. Network Diagram

TROUBLESHOOTING INFORMATION

Configure Windows 95 after a Domain name change Configure TCP/IP correctly using DHCP Eliminate Network Traffic by Disabling Sharing

How To - Implement Single Sign On Authentication with Active Directory

Other documents in this series are available at: servernotes.wazmac.com

Wireless Network Configuration Guide

Dell Compellent Storage Center

Integration Guide. Microsoft Active Directory Rights Management Services (AD RMS) Microsoft Windows Server 2008

3M Command Center. Installation and Upgrade Guide

Windows 7 Hula POS Server Installation Guide

Security Provider Integration Kerberos Server

Active Directory 2008 Implementation Guide Version 6.3

PasserellesNumeriquesCambodia (PNC)

Migration Strategies and Tools for the HP Print Server Appliance

How To - Implement Clientless Single Sign On Authentication in Single Active Directory Domain Controller Environment

TrueEdit Remote Connection Brief

Redtail CRM Integration. Users Guide Cities Digital, Inc. All rights reserved. Contents i

Implementing and Supporting Microsoft Windows XP Professional

Lotus Notes 6.x Client Installation Guide for Windows. Information Technology Services. CSULB

Using MailStore to Archive MDaemon

- 1 - SmartStor Cloud Web Admin Manual

Client Server Networks

In this topic we will cover the security functionality provided with SAP Business One.

NETASQ SSO Agent Installation and deployment

Intel Active Management Technology with System Defense Feature Quick Start Guide

Active Directory Management. Agent Deployment Guide

InfoRouter LDAP Authentication Web Service documentation for inforouter Versions 7.5.x & 8.x

Installation Guide - Client. Rev 1.5.0

Savvius Insight Initial Configuration

Professional Mailbox Software Setup Guide

Installing Windows XP Professional

Configuring your network settings to use Google Public DNS

Virtual CD v10. Network Management Server Manual. H+H Software GmbH

Professional Mailbox Software Setup Guide

Note: This case study utilizes Packet Tracer. Please see the Chapter 5 Packet Tracer file located in Supplemental Materials.

Table Of Contents. - Microsoft Windows - WINDOWS XP - IMPLEMENTING & SUPPORTING MICROSOFT WINDOWS XP PROFESSIONAL...10

Scan to Quick Setup Guide

READYNAS INSTANT STORAGE. Quick Installation Guide

LucidNAS Quick Start Guide

Setting Up Scan to SMB on TaskALFA series MFP s.

Transcription:

Intel Entry Storage System SS4200-E Active Directory Implementation and Troubleshooting 1

Active Directory Overview SS4200-E Active Directory is based on the Samba 3 implementation The SS4200-E will function as a native domain member server Cannot function as an Active Directory domain controller (Samba 3 limitation) Interdomain trusts are not supported NT domain is not supported The SS4200-E uses Kerberos, not NT compatible authentication protocols Supports Active Directory organizational units Organizational units act as a container for objects. Objects can be arranged according to security and administrative requirement in an organization No setup/configuration is required on a working domain controller, or DNS server 2

Active Directory Features After Active Directory is enabled, Active Directory credentials can be used to login to the Storage Manager Only those Active Directory users who have logged in to the Storage Manager or have accessed the storage device from a client will be considered valid storage Active Directory users Only these valid storage Active Directory users will be displayed on the users list in the Storage Manager This avoids the unnecessary overhead if only a few users out of thousands of Active Directory users need to access the storage device A hardware reset will return the SS4200-E to the default Workgroup mode 3

Active Directory Features Any Windows user in the same domain can access the storage device with Active Directory credentials Private folders will be automatically created for each logged in user (to storage device) or any user who accesses the storage device from a Windows client Configuring Active Directory Mode To switch between Workgroup mode and Active Directory mode: Use Storage Manager to switch between Workgroup mode and Active Directory mode (Settings > Network Services > Windows File Sharing (CIFS)) (See the visual representation in following slides) 4

Configuring Active Directory Mode Workgroup mode accounts will be disabled in Active Directory mode Switching between Workgroup mode and Active Directory mode will remove the existing permissions setting of all private folders After switching, a user with administrative privilege can reassign permissions setting or delete these private folders This is to enable the content of private folders created under one mode to be accessible under another mode In the case of permanent loss of the domain controller, this feature provides a way to recover/delete Active Directory folders under Workgroup mode 5

Join an Active Directory Domain Settings > Network Services > Network Settings page of the Storage Manager Add the domain DNS server IP address(es) This can be done manually or automatically from a DHCP server by selecting the Automatically configure all network settings box 6

Joining an Active Directory Domain Settings tab > Network Services > Windows File Sharing (CIFS) Settings page of the Storage Manager Set Security Mode to Active Directory Domain Organizational unit entry is optional Enter the fully qualified name of the domain controller and the credentials of an Active Directory domain administrator account After successfully joining the Active Directory domain, the SS4200-E should appear on the network domain controller s Active Directory Users and Computers menu as a member server. 7

Log in to the Storage Manager After joining the Active Directory domain, the Active Directory credentials can be used to login to the Storage Manager 8

Storage Manager User Accounts tab of the Storage Manager As noted earlier, only the users who have logged in will be shown on the User Accounts list After a user logs in, a private folder will be automatically created for the logged in user on the storage system 9

Storage Manager Shared Folder tab of the Storage Manager The user folder mike is locked and inaccessible to the Administrator who is logged in currently 10

Troubleshooting common Active Directory issues No configuration of a working domain DNS server / Active Directory controller is required Active Directory uses DNS as its domain controller location mechanism. If the storage device is not defined on the DNS server of the Active Directory domain, Active Directory will not recognize the storage system: Verify and correctly set the Storage Manager Network Services under Windows File Sharing (CIFS) Setting ping and nslookup commands can be used to test name resolution C:\> ping <storage system name> Will respond with associated IP address and ping response C:\> nslookup <storage system name> Successful response: Server: <Domain DNS server> Address: <Domain DNS server IP address> Non-authoritative answer: Name: <FQDN for storage system> Address: <storage system IP address> If responses are correct, DNS is working correctly 11

Troubleshooting Common Active Directory Problems If the storage system doesn t use the DNS server of the Active Directory domain Verify and correctly set the Storage Manager Network Services under Windows File Sharing (CIFS) Settings Time on the storage system and the domain controller are not synchronized As little as a five minute discrepancy can cause logon requests to be rejected It is strongly recommended to use NTP for storage system to synchronize with domain controller Storage Manager > Settings > Date & Time Set Automatically synchronize with an Internet time server and specify NTP time server Remember to check the Active Directory domain controller s Active Directory Users and Computers menu for the storage system member server 12