3.1 Server Authentication

Take note of the following recommendations for server authentication:

  • All non-root users must follow a non-root password policy, particularly for systems where the user is not an administrator.

  • All users must follow a strong password policy.

  • When installing eDirectory on a Windows operating system, only the Administrator account should be used as the user account.

  • Audit logins and system access to effectively monitor user activities on the console. You can use a third-party tool to generate reports and track these activities efficiently.

  • Grant the user hosting the service full file system rights, including access to DIB and config files. Read access should not be granted to any other user.