LDAP (AD) high availability with 3par's authentication

Post Reply
nsnidanko
Posts: 116
Joined: Mon Feb 03, 2014 9:40 am

LDAP (AD) high availability with 3par's authentication

Post by nsnidanko »

Hi All,

How does everyone provide HA (high availability) for 3par's LDAP authentication? You can enter only one LDAP server. What happens when authentication server is not available?

Thanks
Cleanur
Posts: 254
Joined: Wed Aug 07, 2013 3:22 pm

Re: LDAP (AD) high availability with 3par's authentication

Post by Cleanur »

Not an expert on ldap Integration, but couldn't you use multiple DNS entries ?
nsnidanko
Posts: 116
Joined: Mon Feb 03, 2014 9:40 am

Re: LDAP (AD) high availability with 3par's authentication

Post by nsnidanko »

Not sure what do you refer as multiple DNS entries, but my dilemma is that ldap-server only takes single server.
phoglind
Posts: 18
Joined: Thu Jun 12, 2014 3:01 pm

Re: LDAP (AD) high availability with 3par's authentication

Post by phoglind »

Hi,

Have you tried to just add the active directory/ldap realm instead of an host?
Instead of host.yourdomain.com you just ad the realm yourdomain.com

I've just add my LDAP authorization for two 7400 systems resently upgradet to 3.1.3.
And it works OK, but we face some issues when using ldap accounts to configure and managing parts of the system from both IMC and CLI

K.R.
Peter
afidel
Posts: 216
Joined: Tue May 07, 2013 1:45 pm

Re: LDAP (AD) high availability with 3par's authentication

Post by afidel »

phoglind wrote:Hi,

Have you tried to just add the active directory/ldap realm instead of an host?
Instead of host.yourdomain.com you just ad the realm yourdomain.com

I've just add my LDAP authorization for two 7400 systems resently upgradet to 3.1.3.
And it works OK, but we face some issues when using ldap accounts to configure and managing parts of the system from both IMC and CLI

K.R.
Peter

The one problem with using realm is that at least with AD integrated DNS you'll get back a list of ALL domain controllers, not just those in the current site so your appliance may connect to a DC in a far off site which can lead to problems.
Post Reply