3.1.5 Centralized Identification and Authentication of OS Users

Oracle Exadata System Software 23.1.0 introduces support for infrastructure enabling centralized identification and authentication of operating system (OS) users.

Specifically, in this release, you can configure the Linux System Security Services Daemon (SSSD) to facilitate Exadata database server and storage server access using LDAP to provide identity services and Kerberos as the authentication protocol. Oracle Exadata System Software contains the Linux packages to support SSSD, which you may configure according to your specific requirements. Furthermore, Oracle Exadata System Software maintains the existing SSSD configuration details during system updates.

The SSSD support is enabled in conjunction with an Exadata-specific security profile using the Linux authselect utility on Oracle Linux 8. Consequently, in this release, Exadata support for Linux SSSD is not available on Xen management domains (dom0), which use Oracle Linux 7.