Configure MS Active Directory via ADCM


To kerberize a cluster using Active Directory, follow the steps below:

  1. In ADCM web UI, go to the Clusters page. Select an installed and prepared ADPS cluster, and run the Manage Kerberos action.

    Running Manage Kerberos
    Manage Kerberos
  2. In the pop-up window, turn on the Existing Active Directory option.

    Kerberos activation options
    Choose the relevant option
  3. Fill in the Active Directory parameters.

    Active Directory parameters
    Active Directory fields
  4. Click Run, wait for the job to complete and proceed to setting up Kerberos in the cluster.

    Activating Kerberos with AD
    Run the action

Active Directory parameters

Parameter Description

Authentication on WEB UIs

Enables Kerberos authentication on Web UIs

KDC hosts

One or more KDC hosts


A Kerberos realm


Domains associated with hosts

Kadmin server

A host where kadmin is running

Kadmin principal

A principal name used to connect via kadmin, for example admin@RU-CENTRAL1.INTERNAL

Kadmin password

A principal password used to connect via kadmin

Keytabs directory

Directory of the keytab file that contains one or several principals along with their keys

Additional realms

Additional Kerberos realms

Admin DN

Full distiguished name of admin user with rights create, modify, delete, pwdchange user accounts in the target Organizational Unit


LDAP URL consists of ldap:// or ldaps://, hostname or IP address, and port of the AD server

Container DN

Container distinguished name

TLS CA certificate Path

CA certificate path on the host’s filesystem. Should be preplaced or will be written down from the TLS CA certificate field

TLS CA certificate (optional)

CA certificate to be written on a host using the path from the TLS CA certificate Path field

Trusted Active Directory server

An Active Directory server for one-way cross-realm trust from the MIT Kerberos KDC

Trusted Active Directory realm

An Active Directory realm for one-way cross-realm trust from the MIT Kerberos KDC

Found a mistake? Seleсt text and press Ctrl+Enter to report it