142 Using iDRAC6 With Microsoft Active Directory
NOTE: The Bit Mask values are used only when setting Standard Schema with
the RACADM.
Single Domain Versus Multiple Domain Scenarios
If all of the login users and role groups, as well as the nested groups, are in the
same domain, then only the domain controllers’ addresses must be configured
on iDRAC6. In this single domain scenario, any group type is supported.
If all of the login users and role groups, or any of the nested groups, are from
multiple domains, then Global Catalog server addresses are required to be
configured on iDRAC6. In this multiple domain scenario, all of the role
groups and nested groups, if any, must be Universal Group type.
Table 6-9. Default Role Group Privileges
Role
Groups
Default Privilege
Level
Permissions Granted Bit Mask
Role
Group 1
None Login to iDRAC, Configure iDRAC,
Configure Users, Clear Logs,
Execute Server Control Commands,
Access Console Redirection,
Access Virtual Media, Test Aler ts,
Execute Diagnostic Commands
0x000001ff
Role
Group 2
None Login to iDRAC, Configure iDRAC,
Execute Server Control Commands,
Access Console Redirection,
Access Virtual Media, Test Alerts,
Execute Diagnostic Commands
0x000000f9
Role
Group 3
None Login to iDRAC 0x00000001
Role
Group 4
None No assigned permissions 0x00000000
Role
Group 5
None No assigned permissions 0x00000000