Veritas NetBackup™ Flex Scale Administrator's Guide
- Product overview
- Viewing information about the NetBackup Flex Scale cluster environment
- NetBackup Flex Scale infrastructure management
- User management
- Node and disk management
- License management
- NetBackup Flex Scale network management
- Bonding operations
- Data network configurations
- NetBackup Flex Scale infrastructure monitoring
- Resiliency in NetBackup Flex Scale
- Site-based disaster recovery in NetBackup Flex Scale
- NetBackup Flex Scale security
- Troubleshooting
- Appendix A. Configuring NetBackup optimized duplication
- Appendix B. Disaster recovery terminologies
Directory services and certificate management
The Lightweight Directory Access Protocol (LDAP) is the protocol used to communicate with LDAP servers. LDAP can be used as a directory service for user management. The LDAP server, that is present outside the NetBackup Flex Scale cluster is responsible for authentication of users. For sites that use an LDAP server for access or authentication, NetBackup Flex Scale provides a simple LDAP client configuration interface. The NetBackup Flex Scale cluster acts as an LDAP client talking to the LDAP server.
You can configure LDAP using the Appliance GUI.
You can configure/add one LDAP server at a time.
You can delete an existing LDAP configuration.
You cannot modify an existing LDAP configuration. To modify any aspect of the LDAP configuration, you have to delete the existing configuration and add it back with the updated parameters.
When you configure LDAP/AD from the GUI, the domain ID is added as nbu_ldap_domain. So, if you add LDAP/AD user from the NetBackup GUI, you have to add the domain name as <user_name>@nbu_ldap_domain.
To configure LDAP
- Navigate to Settings > Directory Services and click Configure.
- Enter the inputs required.
LDAP server address
IP address or FQDN of the LDAP server
Port
Port number on which the LDAP server is listening.
Directory type
Specify the directory type. It can be Open LDAP or Active Directory (when using Microsoft Active Directory)
User Base DN
Base DN subtree that is used when searching for user entries on the LDAP server.
Group Base DN
Base DN subtree that is used when searching for group entries on the LDAP server.
Bind DN/LDAP administrator
Distinguished name of the LDAP user who can search the LDAP directory. Typically, it is the user name of the LDAP server administrator.
Bind DN/LDAP password
Password for the given LDAP administrator user
Encryption type
Specify the encryption type as secure or non-secure.
In secure method, SSL/TLS is the encryption method.
If you choose the Encryption type to be SSL/TLS, you have to upload the certificate that you want to use to encrypt and secure the connection with the LDAP server. Click Choose file and upload the certificate.
- You can test the connection before you configure it. Click Test LDAP connection.
- Click Configure.