<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: iLO authentication using default Directory Schema in Server Management - Remote Server Management</title>
    <link>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630479#M1522</link>
    <description>What i mean is, You need to add the "Context" of the user in the directory settings page. You don't need to include user name in the context. Only the context for the parent folder of the user would be enough. &lt;BR /&gt;For eg: Say the user "abc" is in the Path "Users" in the Active directory in domain say "yourdomian.com". You need to give the context as CN=Users,DC=yourdomain,DC=com and NOT CN=abc,CN=Users,DC=yourdomain,DC=com</description>
    <pubDate>Wed, 21 Sep 2005 23:55:36 GMT</pubDate>
    <dc:creator>pratap m keshava</dc:creator>
    <dc:date>2005-09-21T23:55:36Z</dc:date>
    <item>
      <title>iLO authentication using default Directory Schema</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630476#M1519</link>
      <description>the iLO firmware version is 1.80.  i have configured the iLO directory services according to the instructuction.  However, the test failed at 'User Authentication' with message 'Unable to authenticate test user xxxx[User Object not found] Ceasing tests.&lt;BR /&gt;&lt;BR /&gt;i am sure that the test user that i had entered is a valid domain user.  what is this 'User Object not foun' really means?&lt;BR /&gt;&lt;BR /&gt;please help.&lt;BR /&gt;&lt;BR /&gt;thanks.&lt;BR /&gt;Shu-Chuan Lin</description>
      <pubDate>Tue, 20 Sep 2005 12:49:27 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630476#M1519</guid>
      <dc:creator>Shu-Chuan Lin</dc:creator>
      <dc:date>2005-09-20T12:49:27Z</dc:date>
    </item>
    <item>
      <title>Re: iLO authentication using default Directory Schema</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630477#M1520</link>
      <description>Hi,&lt;BR /&gt;Check if you have given the correct user context in of the user context fields in the directory settings page for the user you are trying to test the directory settings. If you don't give the correct user context, you will get the same error. the format will look like CN=Users,DC=yourdomain,DC=com</description>
      <pubDate>Wed, 21 Sep 2005 05:59:17 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630477#M1520</guid>
      <dc:creator>pratap m keshava</dc:creator>
      <dc:date>2005-09-21T05:59:17Z</dc:date>
    </item>
    <item>
      <title>Re: iLO authentication using default Directory Schema</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630478#M1521</link>
      <description>are you saying the test user has to be define in the 'Directory User Context'?  anyway, so i added the test user to the user context.  the test failed at the same 'User Authentication' with message 'Unable to authenticate test user &lt;USERACCOUNT&gt;'.&lt;/USERACCOUNT&gt;</description>
      <pubDate>Wed, 21 Sep 2005 08:57:18 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630478#M1521</guid>
      <dc:creator>Shu-Chuan Lin</dc:creator>
      <dc:date>2005-09-21T08:57:18Z</dc:date>
    </item>
    <item>
      <title>Re: iLO authentication using default Directory Schema</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630479#M1522</link>
      <description>What i mean is, You need to add the "Context" of the user in the directory settings page. You don't need to include user name in the context. Only the context for the parent folder of the user would be enough. &lt;BR /&gt;For eg: Say the user "abc" is in the Path "Users" in the Active directory in domain say "yourdomian.com". You need to give the context as CN=Users,DC=yourdomain,DC=com and NOT CN=abc,CN=Users,DC=yourdomain,DC=com</description>
      <pubDate>Wed, 21 Sep 2005 23:55:36 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630479#M1522</guid>
      <dc:creator>pratap m keshava</dc:creator>
      <dc:date>2005-09-21T23:55:36Z</dc:date>
    </item>
    <item>
      <title>Re: iLO authentication using default Directory Schema</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630480#M1523</link>
      <description>that was exactly what i entered in the 'context'.  the test still failed at 'User Authentication' with message 'Unable to authenticate test user xxxx.  Without (User Object not found) after the User Context was added.&lt;BR /&gt;&lt;BR /&gt;this is the first time we are trying th iLO authentication using default schema.  Thank you very much for being patience with me.</description>
      <pubDate>Thu, 22 Sep 2005 08:29:19 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630480#M1523</guid>
      <dc:creator>Shu-Chuan Lin</dc:creator>
      <dc:date>2005-09-22T08:29:19Z</dc:date>
    </item>
    <item>
      <title>Re: iLO authentication using default Directory Schema</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630481#M1524</link>
      <description>Hi,&lt;BR /&gt;The error may be because you haven't added the user to any of the groups (either default or customizable) in iLO. Try the following steps&lt;BR /&gt;&lt;BR /&gt;In the Active directory create a group say "testgrp" in "Users". Make the user "abc" a Member of "testgrp". &lt;BR /&gt;&lt;BR /&gt;This can be done by select "testgrp" -&amp;gt; right-click -&amp;gt; select properties. In "members" add the user "abc".&lt;BR /&gt;&lt;BR /&gt;In directory settings page -&amp;gt; "Administer groups". Select one group say "Administrator". In the field "Security Group Distinguished Name" enter CN=testgrp,CN=Users,DC=mydomain,DC=com. &lt;BR /&gt;&lt;BR /&gt;(Make sure there is no extra space in the string) Set appropriate rights (login right is default) for the group "testgrp". These rights will be available for all the members of the group "testgrp". Save the information.&lt;BR /&gt;</description>
      <pubDate>Thu, 22 Sep 2005 23:40:18 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630481#M1524</guid>
      <dc:creator>pratap m keshava</dc:creator>
      <dc:date>2005-09-22T23:40:18Z</dc:date>
    </item>
    <item>
      <title>Re: iLO authentication using default Directory Schema</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630482#M1525</link>
      <description>Hi&lt;BR /&gt;&lt;BR /&gt;I have nearly the same error. I cannot bind to directory server. "Unable to authenticate test user" is the message, credentials invaled. But they are valid :-)&lt;BR /&gt;&lt;BR /&gt;In the Active directory create a group say "testgrp" in "Users". Make the user "abc" a Member of "testgrp". &lt;BR /&gt;==&amp;gt; done&lt;BR /&gt;&lt;BR /&gt;In directory settings page -&amp;gt; "Administer groups". Select one group say "Administrator". In the field "Security Group Distinguished Name" enter CN=testgrp,CN=Users,DC=mydomain,DC=com. &lt;BR /&gt;==&amp;gt; done&lt;BR /&gt;&lt;BR /&gt;(Make sure there is no extra space in the string) Set appropriate rights (login right is default) for the group "testgrp". These rights will be available for all the members of the group "testgrp". Save the information.&lt;BR /&gt;==&amp;gt; done&lt;BR /&gt;&lt;BR /&gt;But I don't know if I have the right config on the Directory settings screen. Perhaps you can help me? I have my actual settings enclosed.&lt;BR /&gt;&lt;BR /&gt;Thank you very much in advance!&lt;BR /&gt;</description>
      <pubDate>Wed, 28 Sep 2005 09:02:24 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630482#M1525</guid>
      <dc:creator>Sandra Inderbitzin</dc:creator>
      <dc:date>2005-09-28T09:02:24Z</dc:date>
    </item>
    <item>
      <title>Re: iLO authentication using default Directory Schema</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630483#M1526</link>
      <description>Hi, In the image you have sent, the Directory user context field is missing. The fields "LOM object Distinguished name" and "LOM object Password" and "LOM object password confirm" are not relevent to Default schema settings.&lt;BR /&gt;&lt;BR /&gt;You need to enter the Directory user context in one of the 3 User context fields. Say if you have user "abc" in directory "Users" in Active directory, you need to enter in the Directory user context field, CN=abc,CN=Users,DC=yourdomain,DC=com. This should solve the problem as you have done other settings.</description>
      <pubDate>Thu, 29 Sep 2005 00:23:01 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630483#M1526</guid>
      <dc:creator>pratap m keshava</dc:creator>
      <dc:date>2005-09-29T00:23:01Z</dc:date>
    </item>
    <item>
      <title>Re: iLO authentication using default Directory Schema</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630484#M1527</link>
      <description>Hi!&lt;BR /&gt;&lt;BR /&gt;I've deleted the LOM lines and inserted the context, but still I get the error credentials are invalid.&lt;BR /&gt;&lt;BR /&gt;I took a user who isn't in a iLO-Group and got the error No login rights, so I know, that this works.&lt;BR /&gt;&lt;BR /&gt;But why it tells me the credentials are invalid??</description>
      <pubDate>Fri, 30 Sep 2005 08:41:38 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630484#M1527</guid>
      <dc:creator>Sandra Inderbitzin</dc:creator>
      <dc:date>2005-09-30T08:41:38Z</dc:date>
    </item>
    <item>
      <title>Re: iLO authentication using default Directory Schema</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630485#M1528</link>
      <description>Exactly. I think I will call the HP response center for help.  Thank you all for your help.</description>
      <pubDate>Fri, 30 Sep 2005 12:42:13 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630485#M1528</guid>
      <dc:creator>Shu-Chuan Lin</dc:creator>
      <dc:date>2005-09-30T12:42:13Z</dc:date>
    </item>
    <item>
      <title>Re: iLO authentication using default Directory Schema</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630486#M1529</link>
      <description>Well, login via CN now is working :-) but not the login via user@domain.com&lt;BR /&gt;&lt;BR /&gt;In the iLO-Help there is written:&lt;BR /&gt;&lt;BR /&gt;==============&lt;BR /&gt;Example 3&lt;BR /&gt;(Active Directory only)&lt;BR /&gt;Microsoft Active Directory allows an alternate user credential format. Search contexts in this format cannot be tested except by successful login using them. A user may login as:&lt;BR /&gt;user@domain.hp.com&lt;BR /&gt;in which case a search context of &lt;BR /&gt;@domain.hp.com&lt;BR /&gt;allows the user to login as &lt;BR /&gt;user&lt;BR /&gt;==============&lt;BR /&gt;&lt;BR /&gt;Is "Active Directory only" only works with HP schema extension or with the schema-less integration also?</description>
      <pubDate>Mon, 03 Oct 2005 08:52:20 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630486#M1529</guid>
      <dc:creator>Sandra Inderbitzin</dc:creator>
      <dc:date>2005-10-03T08:52:20Z</dc:date>
    </item>
    <item>
      <title>Re: iLO authentication using default Directory Schema</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630487#M1530</link>
      <description>Andre,&lt;BR /&gt;&lt;BR /&gt;When you select "Default Schema" then you dont need the HP Schema objects nor expanding the Active Directory Schema !&lt;BR /&gt;&lt;BR /&gt;The HP Schema expansion, provides you additional benefit of migrating the ILO cards into an OU and link HP Security Roles (which of course being added by the Schema Expansion via HP Tools), and by that gain full ILO management via Active Directory from all aspects.&lt;BR /&gt;&lt;BR /&gt;Sharon</description>
      <pubDate>Mon, 31 Oct 2005 07:26:43 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630487#M1530</guid>
      <dc:creator>Sharon Almog_1</dc:creator>
      <dc:date>2005-10-31T07:26:43Z</dc:date>
    </item>
    <item>
      <title>Re: iLO authentication using default Directory Schema</title>
      <link>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630488#M1531</link>
      <description>This thread was interesting and informative, but it doesn't address my specific issue, though it touches on related settings.&lt;BR /&gt;&lt;BR /&gt;Schema-free works for me when using a CN/Display Name. &lt;BR /&gt;&lt;BR /&gt;Our schema has the HP schema extensions, so I switched an iLo to use them. &lt;BR /&gt;&lt;BR /&gt;After many days of trial and error and fruitless searches, I am stumped.&lt;BR /&gt;&lt;BR /&gt;Logging in with "name@domain.com" or "domain\name" both fail with the same error. Here's the error from the test:&lt;BR /&gt;-----&lt;BR /&gt;Initiating Directory Settings diagnostic for server dc2.domain.com&lt;BR /&gt;Directory Server address dc2.domain.com resolved to 172.24.36.10&lt;BR /&gt;Accepting Directory Server certificate for /CN=dc2.domain.com signed by /EMAIL=ca-admin@domain.net/C=US/ST=California/L=Sunnyvale/O=Our Company, Inc./OU=Our Company Certificate Authority/CN=Our Company Root CA&lt;BR /&gt;Unable to access directory with LOM Object Password.&lt;BR /&gt;Test user user@domain.com authenticated.&lt;BR /&gt;Role CN=GOMS-iLo-Access-All,OU=Roles,OU=HP,OU=Common,DC=domain,DC=com&lt;BR /&gt;Cumulative rights gained:&lt;BR /&gt;&lt;BR /&gt;None&lt;BR /&gt;Unable to authorize test user.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Tests complete.&lt;BR /&gt;----------&lt;BR /&gt;&lt;BR /&gt;The only tests that fail are the "LOM Object password" and "User authorization".&lt;BR /&gt;&lt;BR /&gt;I've tried to just login, too, and those logins fail. Only the local "administrator" account defined for the iLo works.&lt;BR /&gt;&lt;BR /&gt;The LOM object obviously exists, and I've tried creating it with no password, the word "password"... Doesn't matter. The user ID is fine, and it works with the schema-free setup. &lt;BR /&gt;&lt;BR /&gt;There is NO documention on this error, there's almost NO documentation on the LOM Object Password usage. There's no help file with guidelines for the LOM objects. &lt;BR /&gt;&lt;BR /&gt;The user ID has FULL rights to the LOM object, based on the role applied.&lt;BR /&gt;&lt;BR /&gt;The LOM object is nested (ie, under a couple of OU's) as are the roles.&lt;BR /&gt;&lt;BR /&gt;I'm at a loss.&lt;BR /&gt;&lt;BR /&gt;Any suggestions welcome!!!&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;-- Rob --&lt;BR /&gt;</description>
      <pubDate>Thu, 26 Oct 2006 17:56:50 GMT</pubDate>
      <guid>https://community.hpe.com/t5/server-management-remote-server/ilo-authentication-using-default-directory-schema/m-p/3630488#M1531</guid>
      <dc:creator>Rob Ingenthron</dc:creator>
      <dc:date>2006-10-26T17:56:50Z</dc:date>
    </item>
  </channel>
</rss>

