EFA User Management

EFA users are validated with Unix authentication and LDAP and managed with Role-based Access Control (RBAC).

EFA validates users and their credentials with the following mechanisms:

After EFA is deployed, the installing user has the role of SystemAdmin and has complete access to EFA functionality. For installation on TPVM, this user has the user name of ‘extreme‘.

By default, no other host OS users can access EFA unless the SystemAdmin assigns the appropriate roles.

LDAP supports three modes for fetching the roles assigned to a user.
Click to expand in new window
EFA LDAP Workflow

For more information about assigning roles, see Assign and View EFA Roles. For more information about supported roles, see EFA RBAC Policy Enforcement.