... | @@ -171,16 +171,16 @@ Each tab in the screenshot below presents a form for a service configuration. Yo |
... | @@ -171,16 +171,16 @@ Each tab in the screenshot below presents a form for a service configuration. Yo |
|
|
|
|
|
The services to be configured are illustrated in the following table.
|
|
The services to be configured are illustrated in the following table.
|
|
|
|
|
|
| Service | Remarks |
|
|
| Service | Notes|
|
|
|--------------------------------------|--------------------------------------------------------------|
|
|
|--------------------------------------|-----|
|
|
| DNS (see x) | Required for NFS and SMB shares.|
|
|
| DNS (see [DNS Service](#dns-service))| Required for NFS and SMB shares.|
|
|
| CIFS Server (section 7.2) | Required for NFS and SMB shares. Note that CIFS server must be configured if you want to bind the LDAP Client using the CIFS server credentials.|
|
|
| CIFS Server (see [CIFS Server](#cifs-server))| Required for NFS and SMB shares. Note that CIFS server must be configured if you want to bind the LDAP Client using the CIFS server credentials.|
|
|
| NFS Service (section 7.3) | To configure the NFS server running on the Vserver. Required for NFS and SMB shares (NFS service is required to create export policy on the CIFS shares).|
|
|
| NFS Service (see [NFS Service](#nfs-service))| To configure the NFS server running on the Vserver. Required for NFS and SMB shares (NFS service is required to create export policy on the CIFS shares).|
|
|
| Kerberos Realm (section 7.4) | To enable Kerberos authentification for NFS clients. Only required for NFS shares. For Kerberos authentification against SMB shares, update the Service Principal Name (SPN) attribute of the CIFS machine account on your AD (e.g., using [ADSI Edit](https://docs.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2003/cc773354(v=ws.10)?redirectedfrom=MSDN)) to contain the CIFS SPN whose format should be: cifs/_CIFS interface DNS name_. If your account is bound to BLUE AD, please let us know. |
|
|
| Kerberos Realm (see [Kerberos Realm](#krb-realm))| To enable Kerberos authentification for NFS clients. Only required for NFS shares. For Kerberos authentification against SMB shares, update the Service Principal Name (SPN) attribute of the CIFS machine account on your AD (e.g., using [ADSI Edit](https://docs.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2003/cc773354(v=ws.10)?redirectedfrom=MSDN)) to contain the CIFS SPN whose format should be: cifs/_CIFS interface DNS name_. If your account is bound to BLUE AD, please let us know. |
|
|
| LDAP Client (section 7.5) | To enable access the external LDAP servers. Only required for NFS shares.|
|
|
| LDAP Client (see [LDAP Client](#ldap-client)) | To enable access the external LDAP servers. Only required for NFS shares.|
|
|
| Kerberos NFS Interface (section 7.6) | To enable Kerberos authentification for NFS. Only required for NFS shares.|
|
|
| Kerberos NFS Interface (see [Kerberos NFS Interface](#krb-nfs-iface)) | To enable Kerberos authentification for NFS. Only required for NFS shares.|
|
|
|
|
|
|
### DNS Service
|
|
### <a name="dns-service"></a> DNS Service
|
|
|
|
|
|
This form allows you to create or modify the DNS configuration of the Vserver associated with your storage account.
|
|
This form allows you to create or modify the DNS configuration of the Vserver associated with your storage account.
|
|
|
|
|
... | @@ -201,7 +201,7 @@ After a few seconds, a message should be displayed to indicate that the configur |
... | @@ -201,7 +201,7 @@ After a few seconds, a message should be displayed to indicate that the configur |
|
|
|
|
|
<kbd><img src="uploads/a4dc9824d42fe7969f21f5445124eff9/image017.png"></kbd>
|
|
<kbd><img src="uploads/a4dc9824d42fe7969f21f5445124eff9/image017.png"></kbd>
|
|
|
|
|
|
### CIFS Server
|
|
### <a name="cifs-server"></a> CIFS Server
|
|
|
|
|
|
This form allows you to configure and setup CIFS services on the Vserver associated with your storage account.
|
|
This form allows you to configure and setup CIFS services on the Vserver associated with your storage account.
|
|
|
|
|
... | @@ -212,7 +212,7 @@ Configuration parameters: |
... | @@ -212,7 +212,7 @@ Configuration parameters: |
|
* Active Directory Account Username: The username of the account used to add the CIFS server to the Directory. This part of the credential only needs to be supplied if the domain is being modified.
|
|
* Active Directory Account Username: The username of the account used to add the CIFS server to the Directory. This part of the credential only needs to be supplied if the domain is being modified.
|
|
* Active Directory Account Password: The password for the account used to add the CIFS server to the Active Directory. This part of the credential only needs to be supplied if the domain is being modified.
|
|
* Active Directory Account Password: The password for the account used to add the CIFS server to the Active Directory. This part of the credential only needs to be supplied if the domain is being modified.
|
|
|
|
|
|
### NFS Service
|
|
### <a name="nfs-service"></a> NFS Service
|
|
|
|
|
|
This form allows you to create and modify an NFS configuration on the Vserver associated with your storage account.
|
|
This form allows you to create and modify an NFS configuration on the Vserver associated with your storage account.
|
|
|
|
|
... | @@ -221,7 +221,7 @@ Configuration parameters: |
... | @@ -221,7 +221,7 @@ Configuration parameters: |
|
* NFSv4 ID domain: NFSv4 ID mapping domain.
|
|
* NFSv4 ID domain: NFSv4 ID mapping domain.
|
|
* Permitted Encryption Types: List of permitted encryption types for Kerberos over NFS.
|
|
* Permitted Encryption Types: List of permitted encryption types for Kerberos over NFS.
|
|
|
|
|
|
### Kerberos Realm
|
|
### <a name="krb-realm"></a> Kerberos Realm
|
|
|
|
|
|
This form allows modifying a Kerberos Realm configuration on a Vserver.
|
|
This form allows modifying a Kerberos Realm configuration on a Vserver.
|
|
|
|
|
... | @@ -236,7 +236,7 @@ Configuration parameters: |
... | @@ -236,7 +236,7 @@ Configuration parameters: |
|
* AD Server Name: Hostname of the Active Directory Domain Controller (DC). This is a mandatory parameter if the KDC Vendor is "Microsoft".
|
|
* AD Server Name: Hostname of the Active Directory Domain Controller (DC). This is a mandatory parameter if the KDC Vendor is "Microsoft".
|
|
* AD Server IP: IP Address of the Active Directory Domain Controller (DC). This is a mandatory parameter if the kdc-vendor is "Microsoft".
|
|
* AD Server IP: IP Address of the Active Directory Domain Controller (DC). This is a mandatory parameter if the kdc-vendor is "Microsoft".
|
|
|
|
|
|
### LDAP Client
|
|
### <a name="ldap-client"></a> LDAP Client
|
|
|
|
|
|
This form allows you to create or modify a Lightweight Directory Access Protocol (LDAP) client configuration on the Vserver associated with your storage account.
|
|
This form allows you to create or modify a Lightweight Directory Access Protocol (LDAP) client configuration on the Vserver associated with your storage account.
|
|
|
|
|
... | @@ -258,7 +258,7 @@ Configuration parameters: |
... | @@ -258,7 +258,7 @@ Configuration parameters: |
|
* LDAP schema: LDAP schema to use for this configuration.
|
|
* LDAP schema: LDAP schema to use for this configuration.
|
|
* Base DN: Indicates the starting point for searches within the LDAP directory tree.
|
|
* Base DN: Indicates the starting point for searches within the LDAP directory tree.
|
|
|
|
|
|
### Kerberos NFS Interface
|
|
### <a name="krb-nfs-iface"></a> Kerberos NFS Interface
|
|
|
|
|
|
This form allows you to create and modify Kerberos configuration information for the NFS Logical Network Interface on the Vserver associated with your storage account.
|
|
This form allows you to create and modify Kerberos configuration information for the NFS Logical Network Interface on the Vserver associated with your storage account.
|
|
|
|
|
... | | ... | |