サポートと今すぐチャット
サポートとのチャット

QoreStor 7.1.1 - User Guide

Introducing QoreStor Accessing QoreStor Configuring QoreStor settings
Licensing QoreStor Configuring SAML Configuring an SSL Certificate for your QoreStor System Configuring Active Directory settings Understanding system operation scheduling Configuring Secure Connect Enabling MultiConnect Configuring and using Rapid NFS and Rapid CIFS Configuring and using VTL Configuring and Using Encryption at Rest Configuring email notification settings Configuring and using the Recycle Bin Configuring Cloud Reader Configuring RDA immutability
Managing containers Managing local storage Managing cloud storage Managing replications Managing Users Monitoring the QoreStor system Managing QoreStor Remotely Support, maintenance, and troubleshooting Security recommendations guide About us

Configuring an SSL Certificate for your QoreStor System

For additional security, you can replace the self-signed, factory-installed certificate with another SSL certificate, for example, with one that is signed by a third-party CA. Once you have obtained your signed certificate and private key, you can install them by using the QoreStor UI or CLI. Only one certificate can be installed on a QoreStor system at any given point in time. The same certificate will be used for HTTPS access to object containers.

Installing an SSL certificate

To install an SSL certificate, complete the following steps:
  1. In the navigation menu, click Dashboard.
  2. In the System Information pane at the bottom, click SSL Certificate.
  3. Click Upload Certificate.
  4. Select the SSL certificate on your system that you want to install.
  5. Click Upload Key and select your private key.
  6. Click Upload.

Configuring Active Directory settings

You can easily join the QoreStor to your Microsoft Active Directory Services (ADS) domain. This topic describes how to configure Active Directory (AD) settings for the QoreStor system, which requires that you direct yourQoreStor system to join or leave a domain that contains a Microsoft Active Directory Service (ADS). Instructions are provided below to join an ADS domain or to leave an ADS domain. When you join QoreStor to an ADS domain, this disables the Network Time Protocol (NTP) service and instead uses the domain-based time service.

To configure QoreStor for a domain using ADS, complete the following steps:

  1. In the left navigation menu, click System > Active Directory.
  2. Click Join Domain.
  3. Enter the following AD logon information:
    • Domain —Enter a fully qualified domain name for the ADS; for example, AD12.acme.com. (This is a required field.)

      NOTE: Supported domain names are limited to 64 characters in length and can only consist of a combination of A-Z, a-z, 0-9, and three special characters: a dash (-), a period (.), and an underscore (_).

    • Organization—Enter a valid organizational name that meets the organization name guidelines for the ADS. (This is an optional field.)
    • Username—Enter a valid user name that meets the user name guidelines for the ADS. (This is a required field.)

      NOTE: Supported user names are limited to 64 characters in length and can only consist of a combination of A-Z, a-z, 0-9, and three special characters: a dash (-), a period (.), and an underscore (_).

    • Password—Enter a valid password that meets the password guidelines for the ADS. (This is a required field.)
  4. Click Join.
  5. To leave a domain, find the domain on the Active Directory page and click Leave Domain.
    1. In the Leave Active Directory pane, enter the username and password for the ADS domain.
    2. Click Leave.

Adding a login group to an ADS domain

NOTE: This is an optional configuration, and only necessary if Domain users in a login group are expected to authenticate to the QoreStor UI.

After you configure your QoreStor within the same ADS domain, you must ensure that a login group exists and add it to the domain. Adding a login group is only possible when the QoreStor system is joined to a domain. Also, you must be logged in as a domain user that is part of an enabled login group.

To add a login group in an ADS domain, complete the following steps:

  1. On the left navigation menu, clickSystem > Active Directory.
  2. On the Active Directory page, find the domain pane and clickAdd Login Group.
  3. In the Add Login Group pane, type the name of the login group including the domain name; for example, Domain\Domain Admins. If your login group name contains spaces, you must not enclose it in quotation marks. (This differs from the equivalent CLI command.)
  4. Click Add Login Group to add the login group.

    NOTE: Changes made to the login group take effect on the next log in attempt (unlike Windows ADS, no active checking is done on the group).

関連ドキュメント

The document was helpful.

評価を選択

I easily found the information I needed.

評価を選択