<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Create DFM Monitoring Account in Active IQ Unified Manager Discussions</title>
    <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Create-DFM-Monitoring-Account/m-p/144738#M26324</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If we go with AD service account, how can we make sure that&amp;nbsp; no one can login to filer using same account via ssh.&amp;nbsp; Thanks in advance.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 19 Nov 2018 08:59:09 GMT</pubDate>
    <dc:creator>Baiju</dc:creator>
    <dc:date>2018-11-19T08:59:09Z</dc:date>
    <item>
      <title>Create DFM Monitoring Account</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Create-DFM-Monitoring-Account/m-p/116881#M20785</link>
      <description>&lt;P&gt;Hello,&lt;BR /&gt;&lt;BR /&gt;i'm not getting anywhere with netapp support on this topic and was hoping somebody in the community might be able to help.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We currently use ROOT to monitor our systems in DFM.&amp;nbsp; I want to use an existing domain service account to do this function but I don't want to elevate it to ADMIN on the filers which is Netapp's first suggestion.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Has anyone created a custom role on their filers that grants only the NECESSARY capabilities to an account so that it can perform DFM monitoring but is not an admin or has login capabilities?&amp;nbsp; If so, can you let me know the capabiliities you granted the role?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;thank you.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Matt&lt;/P&gt;</description>
      <pubDate>Wed, 09 Mar 2016 14:15:10 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Create-DFM-Monitoring-Account/m-p/116881#M20785</guid>
      <dc:creator>MSANDONASSGA</dc:creator>
      <dc:date>2016-03-09T14:15:10Z</dc:date>
    </item>
    <item>
      <title>Re: Create DFM Monitoring Account</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Create-DFM-Monitoring-Account/m-p/116882#M20786</link>
      <description>&lt;P&gt;It needs access to just about every API, so creating a role would be futile and a waste of time and effort.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Just create a domain service account and add it. &amp;nbsp;That's common practice.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you want to break out the roles, it will take you a really long time and you will just get frustraded.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I manage 7-mode controllers that number in the 3 digits this way.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Just ensure service account password is under lock and key&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 09 Mar 2016 14:54:15 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Create-DFM-Monitoring-Account/m-p/116882#M20786</guid>
      <dc:creator>JGPSHNTAP</dc:creator>
      <dc:date>2016-03-09T14:54:15Z</dc:date>
    </item>
    <item>
      <title>Re: Create DFM Monitoring Account</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Create-DFM-Monitoring-Account/m-p/116887#M20788</link>
      <description>&lt;P&gt;Thanks for the input. Everything I've been reading bears this out.&amp;nbsp; We'll go this way.&amp;nbsp; thanks.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Matt&lt;/P&gt;</description>
      <pubDate>Wed, 09 Mar 2016 16:47:51 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Create-DFM-Monitoring-Account/m-p/116887#M20788</guid>
      <dc:creator>MSANDONASSGA</dc:creator>
      <dc:date>2016-03-09T16:47:51Z</dc:date>
    </item>
    <item>
      <title>Re: Create DFM Monitoring Account</title>
      <link>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Create-DFM-Monitoring-Account/m-p/144738#M26324</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If we go with AD service account, how can we make sure that&amp;nbsp; no one can login to filer using same account via ssh.&amp;nbsp; Thanks in advance.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 19 Nov 2018 08:59:09 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Active-IQ-Unified-Manager-Discussions/Create-DFM-Monitoring-Account/m-p/144738#M26324</guid>
      <dc:creator>Baiju</dc:creator>
      <dc:date>2018-11-19T08:59:09Z</dc:date>
    </item>
  </channel>
</rss>

