142 Using iDRAC6 With Microsoft Active DirectoryNOTE: The Bit Mask values are used only when setting Standard Schema withthe RACADM.Single Domain Versus Multiple Domain ScenariosIf all of the login users and role groups, as well as the nested groups, are in thesame domain, then only the domain controllers’ addresses must be configuredon iDRAC6. In this single domain scenario, any group type is supported.If all of the login users and role groups, or any of the nested groups, are frommultiple domains, then Global Catalog server addresses are required to beconfigured on iDRAC6. In this multiple domain scenario, all of the rolegroups and nested groups, if any, must be Universal Group type.Table 6-9. Default Role Group PrivilegesRoleGroupsDefault PrivilegeLevelPermissions Granted Bit MaskRoleGroup 1None Login to iDRAC, Configure iDRAC,Configure Users, Clear Logs,Execute Server Control Commands,Access Console Redirection,Access Virtual Media, Test Alerts,Execute Diagnostic Commands0x000001ffRoleGroup 2None Login to iDRAC, Configure iDRAC,Execute Server Control Commands,Access Console Redirection,Access Virtual Media, Test Alerts,Execute Diagnostic Commands0x000000f9RoleGroup 3None Login to iDRAC 0x00000001RoleGroup 4None No assigned permissions 0x00000000RoleGroup 5None No assigned permissions 0x00000000