Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I've been reading up on the new Dynamic Authorization feature in OnTAP 9.15.1 since we just upgraded to that version on one of our clusters. I'm interested if anyone has tried implement this feature and if it was a positive experience. In particular, I'm curious if there's a 'break glass' way to resolve an issue where multiple admins get locked out at the same time, and/or if the main admin account is exempt.
https://docs.netapp.com/us-en/ontap/authentication/dynamic-authorization-overview.html
Solved! See The Solution
1 ACCEPTED SOLUTION
TMADOCTHOMAS has accepted the solution
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Administrators can disable Dynamic Authorization if necessary "Enable or disable dynamic authorization in ONTAP"
The main admin account can be configured to have a higher trust score or be exempt from certain restrictions. This ensures that the primary admin can always access the system even if other accounts are locked out due to suspicious activity
2 REPLIES 2
TMADOCTHOMAS has accepted the solution
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Administrators can disable Dynamic Authorization if necessary "Enable or disable dynamic authorization in ONTAP"
The main admin account can be configured to have a higher trust score or be exempt from certain restrictions. This ensures that the primary admin can always access the system even if other accounts are locked out due to suspicious activity
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Very good to know! That pretty much answers my question, thank you @pandeyji !
