Config Panel - Guntermann und Drunck GmbH
Config Panel - Guntermann und Drunck GmbH
Config Panel - Guntermann und Drunck GmbH
Create successful ePaper yourself
Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.
User authentication with directory services<br />
Network functions of the devices<br />
In in-house networks, the user accounts of different users are often administrated by<br />
a directory service. The device can access such a directory service and authenticate<br />
users against the directory service.<br />
NOTE: If the Admin user account cannot be authenticated by the directory service,<br />
the user account is authenticated by the device’s data base.<br />
The directory service is exclusively used to authenticate a user. The user rights are<br />
assigned within a database of the KVM system. The following paragraphs describe the<br />
different scenarios:<br />
The user account exists within the directory service and the KVM system<br />
The user can log in with the password stored in the directory service. After the<br />
login, the user is assigned with the rights of the correspondent account in the<br />
KVM system.<br />
NOTE: The password which the user used to log in, is taken over into the database<br />
of the KVM system.<br />
The user account exists within the directory service, but not within the KVM system<br />
A user that has been successfully authenticated against the directory service, but<br />
does not have an account of the same name within the database of the KVM system,<br />
is assigned with the rights of the RemoteAuth user.<br />
If required, change the rights of this particular user account to set the rights for<br />
users without a user account.<br />
ADVICE: Deactivate the RemoteAuth user to prevent users without user accounts<br />
to log in to the KVM system.<br />
The user account exists within the KVM system, but not within the directory service<br />
If the directory service is available, it reports that the user account does not exist.<br />
The access to the KVM system is denied to the user.<br />
If the server is not available, but the fallback system is active (see below), the user<br />
can log in with the password that is stored within the KVM system.<br />
IMPORTANT: Mind the following safety instructions to prevent a locked or deactivated<br />
user from logging in to the system in case the connection to the directory<br />
service fails:<br />
If a user account is deactivated or deleted in the directory service, this action<br />
can also be carried out within the user database of the KVM system.<br />
Only activate the fallback system in reasonable exceptional cases.<br />
Dynamic-UserCenter 32 · 32