NetBackup™ Web UI Security Administrator's Guide
- Introducing the NetBackup web user interface
- Managing role-based access control
- About role-based access control (RBAC) in NetBackup
- NetBackup default RBAC roles
- Configuring RBAC
- Add a custom role
- Edit or delete a custom role
- About object groups
- Steps to create an object group
- Edit or delete an object group
- Add access for a user through access rules
- Edit or remove user access rules
- Adding AD or LDAP domains
- Security events and audit logs
- Managing hosts
- Managing security certificates
- Managing user sessions
- Managing master server security settings
- Certificate authority for secure communication
- Disable communication with NetBackup 8.0 and earlier hosts
- Disable automatic mapping of NetBackup host names
- About NetBackup certificate deployment security levels
- Select a security level for NetBackup certificate deployment
- Set a passphrase for disaster recovery
- Creating and using API keys
- Configuring smart card authentication
- Troubleshooting access to the web UI
Unable to add AD or LDAP domains with the vssat command
After you add an AD or LDAP domain, you can verify the configuration with the vssat validateprpl command and for groups with the vssat validategroup command. If a domain is not added successfully, the vssat validation displays The principal or group does not exist. More details are written to the nbatd logs.
Validation of an AD or LDAP user can fail for any of the following reasons:
The connection cannot be established with the AD or LDAP server
Incorrect user credentials were provided
An incorrect user base DN or group base DN was provided
Multiple users or groups exist with the same name under the user base DN or the group base DN
The user or group does not exist
For information about the vssat command, see the NetBackup Commands Reference Guide.