NetBackup™ Web UI Administrator's Guide
- Introducing the NetBackup web user interface
- Monitoring NetBackup
- Notifications
- Section I. Managing role-based access control
- About role-based access control in NetBackup
- Configuring RBAC roles
- Configuring RBAC
- Default RBAC roles
- RBAC permissions
- Global > NetBackup management
- Global > Security
- Global > Storage
- Assets
- Manage access
- Section II. Managing security
- Security events and audit logs
- Managing security certificates
- Managing user sessions
- Managing master server security settings
- About trusted primary servers
- Creating and managing API keys for users (Administrators)
- Adding and managing your API key (Users)
- Configuring authentication options
- Managing hosts
- Section III. Managing storage and backups
- Configuring storage
- Managing protection plans
- Managing classic policies
- Usage reporting and capacity licensing
- Configuring storage
- Section IV. Veritas Resiliency Platform
- Section V. Credentials
- Troubleshooting the NetBackup Web UI
Sign-in options for the NetBackup web UI
NetBackup supports authentication of local domain users and Active Directory (AD) or LDAP domain users. AD and LDAP domains, smart card, and Single Sign-On (SSO with SAML) requires separate configuration for each primary server domain where you want to use the authentication method.
NetBackup supports the following types of user authentication:
User name and password
Digital certificate or smart card, including CAC and PIV
This authentication method only supports one AD or LDAP domain for each primary server domain and is not available for local domain users.
See Configure user authentication with smart cards or digital certificates.
Single sign-on, with SAML
Note the following requirements and limitations.
To use SSO, you must have a SAML 2.0 compliant identity provider configured in your environment.
Only one AD or LDAP domain is supported for each primary server domain. This feature is not available for local domain users.
Configuration of the IDP requires the NetBackup APIs or the NetBackup command nbidpcmd.
API keys are used to authenticate a user or a group and cannot be used with SAML-authenticated users or groups.
Global logout is not supported.