This feature, also known as user mapping, allows you to associate an Active Directory user account with a local Unix user. Allowing a local user to log in to a Unix host using Active Directory credentials enables that user to take advantage of the benefits of Active Directory security and access control.
To enable a local user for Active Directory authentication
- From the management console, open the Host | All Hosts view.
- From the All Hosts view, double-click a host to open its properties.
- Select the Users tab and double-click the localuser account to open its properties.
Note: To set up this local user account, see Adding a local user account.
- In the AD Logon tab, select the Require an AD Password to logon to Host option, and click Select.
- In the Select AD User dialog, click the Search button to populate the list of Active Directory users, select the ADuser account, and click OK.
Note: To set up this Active Directory user, see Adding an Active Directory user account.
- On the localuser's properties, click OK.
- In the Log on to Host dialog, verify your credentials to log in to the host and click OK.
You have now mapped a local user to an Active Directory user and the management console indicates that the local user account requires an Active Directory password to log onto the Host in the AD User column.
You can also map multiple Unix users to use a single Active Directory account using the Require AD Logon pane on the All Local Users tab.
To assign (or "map") a Unix user to an Active Directory user
- From the All Local Users tab, select one or more local Unix users.
- In the Require AD Logon pane, click the Search button to populate the list of Active Directory users.
(Click the Directory button to search in a specific folder.)
- Select an Active Directory user and click the Require AD Logon to Host button at the bottom of the Require AD Logon pane.
- In the Log on to Host dialog, verify your credentials to log in to the host and click OK.
Note: This task requires elevated credentials.
The Active Directory user assigned to the selected local Unix users displays in the AD User column of the All Local Users tab.