About deleting LDAP or Active Directory users
When you delete an LDAP or Active Directory user, ensure that you delete the user
from the NetBackup Appliance. If you delete a user from the LDAP or Active
Directory before deleting it from the NetBackup Appliance it results in an error
condition.
Note: If the user is removed from the LDAP directory or Active Directory (and not
removed from appliance), though the user is listed as LDAP or AD authorized user,
the user will not be able to log in. So, these users poses no security threat.
For example, you want to delete user John Doe from the LDAP server and the
NetBackup Appliance. You delete the user entry for John Doe from your LDAP
server. Then you log into the NetBackup Appliance Shell Menu and to remove a
user using the LDAP > Users Remove John Doe command. The appliance does
not recognize the user and displays the following error:
The user name that you have entered is not valid. Enter a valid user name.
For more information refer to the Symantec NetBackup™ Appliance Security Guide.
See “About best practices” on page 17.
29Best practices
About deleting LDAP or Active Directory users