Use the KMIPCLI update-ad-settings command to update your Active Directory settings.

Syntax

kmipcli update-ad-settings [options]

Option

Description

-h or --help

Displays usage text.

-a, --ad-setting-id string

The Active Directory setting ID or name.

-n, --netbios-name string

The Active Direcotry NetBIOS name.

-r, --revision int

The Active Directory setting current revision.

-j, --servers-json-file string

Active Directory Domain Controller List JSON File. This is to be a array of JSON objects, each object representing a Domain Controller. Following keys are supported,

server_url (mandatory) full url of the Domain Controller

cacert (optional) path to CA Certificiate to verify with

user_base_dn (optional) user base DN

group_base_dn (optional) group base DN

timeout (optional) connection timeout in seconds, defaults to 5 seconds

tls (optional) enable StartTLS or not, defaults to false Example: [ { "server_url": "ldaps://dc1.mycompany.eng.com", "cacert": "/root/cacert.pem", "user_base_dn": "DC=mycompany,DC=eng,DC=com", "group_base_dn": "DC=mycompany,DC=eng,DC=com", "timeout": 10, "tls": false, } ]

-s, --service-account string

The Active Directory service account user name. To clear this value, set it to "unset".

-p, --service-password string

The Active Directory service account password.

-t, --type string

The domain type.

-u, --uid-attribute string

The Active Directory UID attribute.