Selecting an account-management model for an Analyzer or a Collector


To establish how the Analyzer and Collector or Monitor components authenticate and authorize users, you select an account-management model for your system. You can choose from the following account-management models for the Real User Analyzer, Real User Collector, and Real User Monitor components:

  • Local accounts — The component handles authentication and authorization through its own passwords and roles.
  • LDAP-managed accounts — The component manages the authentication and authorization of accounts by using LDAP or a hybrid approach in which the LDAP server handles authentication and the component handles authorization. 

    When LDAP handles authorization, the Administrator configures role mappings, which associate LDAP groups with component access levels (roles).

To perform this procedure, you must have Security-level access. 

To select an account-management model for the Analyzer and Collector

  1. In an Analyzer or Collector component, point to Administration > General Settings, and then click Accounts & LDAP management.
  2. Select the LDAP settings view.
  3. To set the account-management model, click the appropriate one of the following options:

    Authentication

    Authorization

    Account-management model selection

    Local

    Local

    Let Real User Analyzer manage access
    Let Real User Collector manage access
    Let Real User Monitor manage access

    LDAP

    Local

    Use LDAP for authentication only

    LDAP

    LDAP

    Use LDAP for authentication and authorization

Related topics

Adding-or-deleting-a-local-account-on-the-Analyzer-and-Collector

Adding-an-LDAP-managed-account-on-an-Analyzer-or-a-Collector

Using-LDAP-authentication-and-authorization

 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*