QuestionQ467

Security

An engineer needs to implement access control for Cisco UCS Manager. The configuration must satisfy these requirements:

  • Configure all users and user groups by using Active Directory.
  • Give User1 full access to the Fabric Interconnect infrastructure and network-security operations.
  • Give User1 full access to the storage-operations configuration.

Which action must be performed on Cisco UCS to satisfy the requirements?

  • A Execute a built-in role for the user and RADIUS for the role-mapping for Active Directory.
  • B Execute a built-in role for the user and LDAP for the role-mapping for Active Directory.
  • C Create a custom role for the user and LDAP for the role-mapping for Active Directory.
  • D Create a custom role for the user and RADIUS for the role-mapping for Active Directory.
Explanation

The built-in Network Administrator role provides read/write access to Fabric Interconnect infrastructure and network-security operations, and the built-in Storage Administrator role provides read/write access to storage operations. Active Directory users and groups are mapped through LDAP in Cisco UCS Manager, so built-in roles with LDAP role mapping meet the required access model.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!