WebUI Authentication Using Active Directory

Abstract:

This document provides instructions on how to set up your AD domain controller to allow authentication to the Panzura Cloud Controller using Active Directory Credentials.

Purpose

This document was put together to list out the steps necessary to allow authentication to the Panzura Cloud Controller using AD credentials without additional
setup in the Panzura Controller.  

Scope

This document assumes that the reader has admin access to Windows Active Directory with the ability to create groups and add users to groups.  The Panzura
Corporate VPN in order to access the licensing site and the ability to log into the Panzura Cloud Controller to apply the licenses.
 

WebUI Authentication Using Active Directory:

If the controller has joined an Active Directory domain, you can set up your AD domain controller to allow authentication to the Panzura controller using Active Directory
credentials without additional setup in the Panzura Controller.  To use this feature, add the following two groups to the AD domain controller:

  1. priv_panzura_admins
  2. priv_panzura_users

Set the Group Scope to Global and Group Type to Security.   Users assigned to either of these groups can then log in to the Panzura Controller using their AD credentials. 
Either of the following user formats are accepted:

  • username@domainname
  • domainname\username

The instructions below show a walk through of the steps listed above.

 Step 1 – Create 2 Groups:

Launch Active Directory Users and Computers.  Right Click on your Domain and Choose New Group.

Call the group 1st group priv_panzura_admins and set the group scope to Global and Group Type to Security as shown below:

Create a second group called priv_panzura_users with the same Group Scope and Group Type as was done for the first group.

Step 2 – Add Users to Groups:

priv panzura admin

Add the user XYZ to the priv_panzura_admins group. 

After adding the user to the group, log into the Panzura Controller using the account.  

                
priv panzura users:

Add the user XYZ to the priv_panzura_users group.

After adding the user to the group, log into the Panzura Controller using the account.  You can use either of two formats to log in as mentioned in the previous example. 
You will be logged in as a User only.

As a User, you only have access to see the Dashboard and don’t have the other 2 Tabs the Admins can see.

This completes the instructions on how to configure AD to log into the WebUI of a Panzura Controller using an AD user and credentials.