VMware VS4-ENT-PL-A Setup Guide - Page 87

Add a vCenter Single Sign-On Identity Source, Change, Install, Finish

Page 87 highlights

Chapter 4 Installing vCenter Server 15 Enter the Inventory Service URL. The Inventory Service URL takes the form https://Inventory_Service_host_FQDN_or_IP:10443. 10443 is the default Inventory Service HTTPS port number. If you entered a different port number when you installed Inventory Service, use that port number here. 16 Either accept the default destination folder or click Change to select another location. The installation path cannot contain any of the following characters: non-ASCII characters, commas (,), periods (.), exclamation points (!), pound signs (#), at signs (@), or percentage signs (%). 17 Click Install. Multiple progress bars appear during the installation of the selected components. 18 Click Finish. The vCenter Server installation is complete. What to do next After you install vCenter Server, you can display the vCenter Server welcome page by typing the IP address of the vCenter Server machine or by typing localhost from a browser installed on the vCenter Server machine. You can install the vSphere Web Client to access vCenter Server. Review the topics in Chapter 5, "After You Install vCenter Server," on page 101 for other postinstallation actions you might want to take. Add a vCenter Single Sign-On Identity Source Users can log in to vCenter Server only if they are in a domain that has been added as a vCenter Single SignOn identity source. vCenter Single Sign-On administrator users can add identity sources from the vSphere Web Client. An identity source can be a native Active Directory (Integrated Windows Authentication) domain or an OpenLDAP directory service. For backward compatibility, Active Directory as an LDAP Server is also available. Immediately after installation, the following default identity sources and users are available: localos vsphere.local All local operating system users. These users can be granted permissions to vCenter Server. If you are upgrading, those users who already have permissions keep those permissions. Contains the vCenter Single Sign-On internal users. Procedure 1 Log in to the vSphere Web Client as [email protected] or as another user with vCenter Single Sign-On administrator privileges. 2 Browse to Administration > Single Sign-On > Configuration. 3 On the Identity Sources tab, click the Add Identity Source icon. 4 Select the type of identity source and enter the identity source settings. Option Active Directory (Integrated Windows Authentication) Active Directory as an LDAP Server Description Use this option for native Active Directory implementations. See "Active Directory Identity Source Settings," on page 88. This option is available for backward compatibility. It requires that you specify the domain controller and other information. See "Active Directory LDAP Server and OpenLDAP Server Identity Source Settings," on page 89. VMware, Inc. 87

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276

15
Enter the Inventory Service URL.
The Inventory Service URL takes the form https://
Inventory_Service_host_FQDN_or_IP
:10443. 10443 is
the default Inventory Service HTTPS port number. If you entered a different port number when you
installed Inventory Service, use that port number here.
16
Either accept the default destination folder or click
Change
to select another location.
The installation path cannot contain any of the following characters: non-ASCII characters, commas (,),
periods (.), exclamation points (!), pound signs (#), at signs (@), or percentage signs (%).
17
Click
Install
.
Multiple progress bars appear during the installation of the selected components.
18
Click
Finish
.
The vCenter Server installation is complete.
What to do next
After you install vCenter Server, you can display the vCenter Server welcome page by typing the IP address
of the vCenter Server machine or by typing
localhost
from a browser installed on the vCenter Server
machine. You can install the vSphere Web Client to access vCenter Server.
Review the topics in
Chapter 5, “After You Install vCenter Server,”
on page 101 for other postinstallation
actions you might want to take.
Add a vCenter Single Sign-On Identity Source
Users can log in to vCenter Server only if they are in a domain that has been added as a vCenter Single Sign-
On identity source. vCenter Single Sign-On administrator users can add identity sources from the
vSphere Web Client.
An identity source can be a native Active Directory (Integrated Windows Authentication) domain or an
OpenLDAP directory service. For backward compatibility, Active Directory as an LDAP Server is also
available.
Immediately after installation, the following default identity sources and users are available:
localos
All local operating system users. These users can be granted permissions to
vCenter Server. If you are upgrading, those users who already have
permissions keep those permissions.
vsphere.local
Contains the vCenter Single Sign-On internal users.
Procedure
1
Log in to the vSphere Web Client as [email protected] or as another user with vCenter Single
Sign-On administrator privileges.
2
Browse to
Administration > Single Sign-On > Configuration
.
3
On the
Identity Sources
tab, click the
Add Identity Source
icon.
4
Select the type of identity source and enter the identity source settings.
Option
Description
Active Directory (Integrated
Windows Authentication)
Use this option for native Active Directory implementations. See
“Active
Directory Identity Source Settings,”
on page 88.
Active Directory as an LDAP Server
This option is available for backward compatibility. It requires that you
specify the domain controller and other information. See
“Active Directory
LDAP Server and OpenLDAP Server Identity Source Settings,”
on
page 89.
Chapter 4 Installing vCenter Server
VMware, Inc.
87