<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: LDAP and AD on same filer in Network and Storage Protocols</title>
    <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/LDAP-and-AD-on-same-filer/m-p/42893#M3955</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry for the late response, I'm not very often on NOW.&lt;/P&gt;&lt;P&gt;Yes it definitly can.&lt;/P&gt;&lt;P&gt;I have a Metro Cluster and some standalone boxes and all are AD integrated for CIFS and LDAP (openldap on Linux) integrated for NFS. And there is even a facility to map AD users to LDAP users (e.g. &lt;A href="mailto:globalAadmin@Company.domain" target="_blank"&gt;globalAadmin@Company.domain&lt;/A&gt; &amp;lt;=&amp;gt; sysadmin (uid=1234, gid=4321)) for multi-protocol volumes.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Boomer&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 17 Feb 2012 11:25:54 GMT</pubDate>
    <dc:creator>boomer123</dc:creator>
    <dc:date>2012-02-17T11:25:54Z</dc:date>
    <item>
      <title>LDAP and AD on same filer</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/LDAP-and-AD-on-same-filer/m-p/42876#M3952</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Can a filer be configured&amp;nbsp; to have&amp;nbsp; cifs registered with a windows AD domain and the&amp;nbsp; filer configured to join another LDAP server?.Do you have a similar config?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Jun 2025 06:41:07 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/LDAP-and-AD-on-same-filer/m-p/42876#M3952</guid>
      <dc:creator>baijulal</dc:creator>
      <dc:date>2025-06-05T06:41:07Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP and AD on same filer</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/LDAP-and-AD-on-same-filer/m-p/42880#M3953</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am not 100% sure what you are after, but I don't think it is doable - "joining" AD domain is something which always happens in a CIFS service context.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Maybe MultiStore is worth looking at? Each of vFilers can join a separate domain, if it helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;BR /&gt;Radek&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 18 Nov 2011 16:54:30 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/LDAP-and-AD-on-same-filer/m-p/42880#M3953</guid>
      <dc:creator>radek_kubka</dc:creator>
      <dc:date>2011-11-18T16:54:30Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP and AD on same filer</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/LDAP-and-AD-on-same-filer/m-p/42884#M3954</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I believe that the correct way to achieve integration with multiple directory services would be through leveraging a unified/federated login service like Centrify.&amp;nbsp; That will allow ONE service to control authentication and consult the other service when needed.&amp;nbsp; One of the problems that I could foresee with joining a filer to an AD domain and also specifying a second LDAP directory service would be conflicts with permissions.&amp;nbsp; Users with accounts in each of the different directories that have conflicting permissions could cause a security issue (not to mention, there's no mechanism that I'm aware of for the filer to decide which is authoritative).&amp;nbsp; If a single sign on service isn't an option, then I'd suggest what Radek said above and look at vFilers for this.&amp;nbsp; You can have one vFiler joined to one domain/LDAP and others joined to different ones and present no issues.&amp;nbsp; Hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Matt&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 18 Nov 2011 17:45:55 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/LDAP-and-AD-on-same-filer/m-p/42884#M3954</guid>
      <dc:creator>dearmon</dc:creator>
      <dc:date>2011-11-18T17:45:55Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP and AD on same filer</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/LDAP-and-AD-on-same-filer/m-p/42893#M3955</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry for the late response, I'm not very often on NOW.&lt;/P&gt;&lt;P&gt;Yes it definitly can.&lt;/P&gt;&lt;P&gt;I have a Metro Cluster and some standalone boxes and all are AD integrated for CIFS and LDAP (openldap on Linux) integrated for NFS. And there is even a facility to map AD users to LDAP users (e.g. &lt;A href="mailto:globalAadmin@Company.domain" target="_blank"&gt;globalAadmin@Company.domain&lt;/A&gt; &amp;lt;=&amp;gt; sysadmin (uid=1234, gid=4321)) for multi-protocol volumes.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Boomer&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Feb 2012 11:25:54 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/LDAP-and-AD-on-same-filer/m-p/42893#M3955</guid>
      <dc:creator>boomer123</dc:creator>
      <dc:date>2012-02-17T11:25:54Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP and AD on same filer</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/LDAP-and-AD-on-same-filer/m-p/42897#M3956</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Boomer,&lt;/P&gt;&lt;P&gt;I too have a need for having both AD integration for CIFS and LDAP integration for NFS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could you share on how you got the netapp to use both or can you point me to documentation you used?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The CIFS part is easy since cifs setup you tell it to joing AD domain.&amp;nbsp; However, my question comes in how you tell the NFS side to authenticate with openldap.&lt;/P&gt;&lt;P&gt;Thanks Jim&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Aug 2012 10:43:58 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/LDAP-and-AD-on-same-filer/m-p/42897#M3956</guid>
      <dc:creator>1jimpross</dc:creator>
      <dc:date>2012-08-31T10:43:58Z</dc:date>
    </item>
    <item>
      <title>Re: LDAP and AD on same filer</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/LDAP-and-AD-on-same-filer/m-p/42900#M3957</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;See &lt;A href="http://media.netapp.com/documents/tr-3458.pdf" target="_blank"&gt;http://media.netapp.com/documents/tr-3458.pdf&lt;/A&gt;  for detailed description.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 31 Aug 2012 10:52:06 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/LDAP-and-AD-on-same-filer/m-p/42900#M3957</guid>
      <dc:creator>aborzenkov</dc:creator>
      <dc:date>2012-08-31T10:52:06Z</dc:date>
    </item>
  </channel>
</rss>

