SlideShare a Scribd company logo
1 of 46
Active Directory for VMware vCenter 6.5
NetCom Learning
NetCom Learning – Managed Learning Services
Agenda
• Introductions
• About the VMware vSphere 6.5 Boot Camp
• Active Directory for vCenter 6.5
• The evolution of vCenter and Directory-based authentication
• What is VMware vCenter SSO?
• Two ways to integrate vCenter SSO with Active Directory
• Method one: Integrating vCenter with AD using the Machine Account
• Method two: Integrating vCenter with AD using LDAP
VMware vSphere 6.5 Boot Camp
Practical VMware Training
• What you need to know to use vSphere
• Current materials
• Real World Best Practices
Our Practical vSphere Boot Camp is like no other
• You have your own enterprise-grade VDI for access
• You work live, with your own ESXi Host and vCenter Server
• You get your own LUN/Volume on an Enterprise SAN
• You have 24X7 Access to your lab environment
• Your instructor can see your VDI and help you 1-on-1 during class
• Boot Camp Class
• 6/19/17 – 6/23/17 Las Vegas
Real-world lab steps
• These methods are taken directly from methods we learn as
consultants in Real-World situations
• Every participant in the Boot Camp will have the opportunity to fully
participate using their own vCenter!
VMware vSphere 6.5 SSO
The evolution of directory-based authentication for VMware vCenter
VMware vCenter 5 and before
• VMware vCenter 5 and prior versions were always a subset of a single
Active Directory domain
• Active Directory was required to install vCenter
• vCenter Server was a Windows-only service
• Domain Admins of the AD domain were always vSphere Administrators by
default!
vCenter in the age of Cloud Computing
• vCenter 5.5 and later versions have their own directory called vCenter
SSO
• Based on MIT Kerberos (same as AD)
• Full configurable as a standalone directory with Users and Groups
• Password aging and complexity configuration possible
• Smart Card and two-factor configuration possible
Advantages of vCenter SSO
• AD is no longer required to install vCenter
• The main requirement for SSO is functioning forward and reverse DNS
• VMware vCenter now a potential superset of many AD Domains
• Can add multiple Active Directory Domains and LDAP directories
• External directories are used as Identity Sources
• External directories remain completely independent
• Domain Admins no longer receive vCenter Administrator permission
by default
• Only one SSO administrator is created during installation
• You add other users and Identity sources at your discretion.
Integrating vCenter and Active Directory
Method 1: Using the Machine Account
Method 1: Using the Machine Account
• Possible with both Windows vCenter and VCSA Appliance (Linux)
• Host Operating System must be joined to the domain
• Creates a dependency between the Host Operating System where
vCenter runs and the AD Domain
Method 1: Using the Machine Account
• Join the Domain
1. In the Navigator bar on the left side of the screen, click on Administration.
Using the Machine Account with SSO
2. Now click on System Configuration
Method 1: Using the Machine Account
3. Click on Nodes.
Method 1: Using the Machine Account
4. Choose your vCenter Node and then click on Active Directory.
Method 1: Using the Machine Account
5. Enter the Domain, OU, User and password
Method 1: Using the Machine Account
6. Reboot your vCenter / VCSA
Method 1: Using the Machine Account
7. Now click on Configuration and then on Identity Sources
a. Click the +
Method 1: Using the Machine Account
8. Choose Active Directory (Integrated Windows Authentication)
Integrating vCenter and Active Directory
Method 2: Using Active Directory LDAP
Method 2: Using Active Directory LDAP
• Possible with both Windows vCenter and VCSA Appliance (Linux)
• Host Operating System does not need to be joined to the domain
• Does not create a dependency between the Host Operating System
where vCenter runs and the Domain
• All LDAP Identity sources remain completely independent
• Many fewer steps overall
Method 2: Using Active Directory LDAP
1. In the Web-Client, click on Home and then on Administration
Using Active Directory as an LDAP Server
2. Now click on Configuration and then on Identity Sources
a. Click the +
Using Active Directory as an LDAP Server
3. Choose Active Directory as an LDAP Server
Using Active Directory as an LDAP Server
4. Enter all of the information in LDAP format
vCenter SSO
Global Permissions
SSO Global Permissions
• Configuration is the same for:
• Windows vCenter
• VCSA
• Domain-joined
• AD as an LDAP server
SSO Global Permissions
1. Choose Global Permissions > Manage > click on +
SSO Global Permissions
2. It’s now possible to add Users/Groups/OUs from the Domain(s)
configured
a. Choose the AD Domain/LDAP Directory
b. Locate the User/Group
c. Click Add
d. Click OK
SSO Global Permissions
3. And assign any/all desired Roles
a. Select the Role (Administrator)
b. Click Add
c. Click OK
vCenter SSO
• No matter if it is a Windows vCenter, VCSA, Domain-joined or LDAP
• You can now log in with directory credentials
• BEST PRACTICE: Do not “Use Windows Session authentication”
• BEST PRACTICE: Enter username in UPN format: user@domain.tld
Upcoming vSphere Classes Webinars
• Webinars
• Boot Camp Class
• 6/19/17 – 6/23/17 Las Vegas
• 8/14/17 – 8/18/17 New York
Watch the Live Demonstration
Watch the recorded webinar here!
Recommended Courses
NetCom Learning offers a comprehensive portfolio for VMware vSphere training
options. Please see below the list of recommended courses:
VMsources VMware vSphere 6.5 Infrastructure Deployment Prep Boot
Camp
Check out more VMware vSphere training options with NetCom Learning –
CLICK HERE
Our live webinars will help you to touch base a wide variety of IT, soft skills and
business productivity topics; and keep you up to date on the latest IT industry trends.
Register now for our upcoming webinars:
Raise your defenses against Malware & Ransomware attacks – May 8
Understanding the Windows Server Administration Fundamentals (Part-1) – June 13
Microsoft Word Power Shortcuts & Tips (Part-2) – June 15
Your Quick Guide to PMP Certification and Examination – June 20
Understanding the Windows Server Administration Fundamentals (Part-1) – June 27
Special Promotion
Whether you're learning new IT or Business skills, or you are developing a learning plan for
your team, now you can register for our Guaranteed to Run classes with confidence.
From Microsoft, to CompTIA, to CISSP; all classes delivered by top-notch instructors in in-
person Instructor-led Classroom or Live Online.
Learn more»
Special Promotion
Is the internet secure? It becomes a matter of deep introspection whether the internet
remains a safe place for us with all our personal and official data on it.
Take a proactive stance on security. It is time to wake up and begin preparing a defense for
the future. Acquire the skillset, become certified cybersecurity professional.
Learn more»
Special Promotion
Trial Version & 10% First Time User discount on Soft Skills
E-Learning Courses
(Limited Period Offer, Register NOW)
Log onto www.sarderlearning.com
Coupon Code: SARDER10
3500+ BYTE SIZE
VIDEOS
200+
MENTORS
100+ COURSES
Leadership focused programs across
Functions, Management levels, &
Industries
Business Productivity programs enabling
professionals master the latest concepts
Soft skills programs ensuring the basics
of management success
Best selling books focused programs
covering all aspects of professional &
personal lives
Premium programs such as Board-Series
www.sarderlearning.com
Course Categories
Anywhere Anytime Learning across
Devices & Operating Systems
Media Platform with a blend of Charlie
Rose & TED
Headquartered in New York, the platform
publishes Exclusive High Quality Video
Content from Fortune 1000 Corporate
Leaders, Best Selling Authors & Ivy League
Professors
With a purpose to "Promote Learning", the
Platform is based on the Core values of
Continuous Learning, Innovation &
Performance.
Get the latest insights on Management,
Strategy, Marketing, Sales, Innovation and
Entrepreneurship.
www.sardertv.com
To get the latest insights on the Business World
To get latest technology updates, please follow our social media pages!
THANK YOU !!!
We manage learning.
“Building an Innovative Learning Organization. A Framework to Build a
Smarter Workforce, Adapt to Change, and Drive Growth”. Download now!

More Related Content

What's hot

VMware Vsphere Graduation Project Presentation
VMware Vsphere Graduation Project PresentationVMware Vsphere Graduation Project Presentation
VMware Vsphere Graduation Project PresentationRabbah Adel Ammar
 
VMware vSphere Storage Appliance (VSA) - Technical Presentation,Almacenamien...
VMware vSphere Storage Appliance (VSA) -  Technical Presentation,Almacenamien...VMware vSphere Storage Appliance (VSA) -  Technical Presentation,Almacenamien...
VMware vSphere Storage Appliance (VSA) - Technical Presentation,Almacenamien...Suministros Obras y Sistemas
 
Nashville VMUG Keynote April 8 2015 - vSphere 6
Nashville VMUG Keynote April 8 2015 - vSphere 6Nashville VMUG Keynote April 8 2015 - vSphere 6
Nashville VMUG Keynote April 8 2015 - vSphere 6Adam Eckerle
 
VMworld 2013: Part 1: Getting Started with vCenter Orchestrator
VMworld 2013: Part 1: Getting Started with vCenter Orchestrator VMworld 2013: Part 1: Getting Started with vCenter Orchestrator
VMworld 2013: Part 1: Getting Started with vCenter Orchestrator VMworld
 
VMware Advance Troubleshooting Workshop - Day 3
VMware Advance Troubleshooting Workshop - Day 3VMware Advance Troubleshooting Workshop - Day 3
VMware Advance Troubleshooting Workshop - Day 3Vepsun Technologies
 
Vsicm51 m01 course_intro_
Vsicm51 m01 course_intro_Vsicm51 m01 course_intro_
Vsicm51 m01 course_intro_Luan Truong Duc
 
VMware Site Recovery Manager (SRM) 6.0 Lab Manual
VMware Site Recovery Manager (SRM) 6.0 Lab ManualVMware Site Recovery Manager (SRM) 6.0 Lab Manual
VMware Site Recovery Manager (SRM) 6.0 Lab ManualSanjeev Kumar
 
VMware vCloud Director
VMware vCloud DirectorVMware vCloud Director
VMware vCloud DirectorErik Bussink
 
VMware Advance Troubleshooting Workshop - Day 5
VMware Advance Troubleshooting Workshop - Day 5VMware Advance Troubleshooting Workshop - Day 5
VMware Advance Troubleshooting Workshop - Day 5Vepsun Technologies
 
VMworld 2013: VMware vSphere High Availability - What's New and Best Practices
VMworld 2013: VMware vSphere High Availability - What's New and Best PracticesVMworld 2013: VMware vSphere High Availability - What's New and Best Practices
VMworld 2013: VMware vSphere High Availability - What's New and Best PracticesVMworld
 
VMware Advance Troubleshooting Workshop - Day 4
VMware Advance Troubleshooting Workshop - Day 4VMware Advance Troubleshooting Workshop - Day 4
VMware Advance Troubleshooting Workshop - Day 4Vepsun Technologies
 
VMware vSphere Version Comparison 4.0 to 6.5
VMware  vSphere Version Comparison 4.0 to 6.5VMware  vSphere Version Comparison 4.0 to 6.5
VMware vSphere Version Comparison 4.0 to 6.5Sabir Hussain
 
VMware vCloud Suite
VMware vCloud SuiteVMware vCloud Suite
VMware vCloud SuiteVMware
 
VMware Advance Troubleshooting Workshop - Day 2
VMware Advance Troubleshooting Workshop - Day 2VMware Advance Troubleshooting Workshop - Day 2
VMware Advance Troubleshooting Workshop - Day 2Vepsun Technologies
 

What's hot (18)

VMware Vsphere Graduation Project Presentation
VMware Vsphere Graduation Project PresentationVMware Vsphere Graduation Project Presentation
VMware Vsphere Graduation Project Presentation
 
VMware vSphere Storage Appliance (VSA) - Technical Presentation,Almacenamien...
VMware vSphere Storage Appliance (VSA) -  Technical Presentation,Almacenamien...VMware vSphere Storage Appliance (VSA) -  Technical Presentation,Almacenamien...
VMware vSphere Storage Appliance (VSA) - Technical Presentation,Almacenamien...
 
Nashville VMUG Keynote April 8 2015 - vSphere 6
Nashville VMUG Keynote April 8 2015 - vSphere 6Nashville VMUG Keynote April 8 2015 - vSphere 6
Nashville VMUG Keynote April 8 2015 - vSphere 6
 
VMworld 2013: Part 1: Getting Started with vCenter Orchestrator
VMworld 2013: Part 1: Getting Started with vCenter Orchestrator VMworld 2013: Part 1: Getting Started with vCenter Orchestrator
VMworld 2013: Part 1: Getting Started with vCenter Orchestrator
 
VMware Advance Troubleshooting Workshop - Day 3
VMware Advance Troubleshooting Workshop - Day 3VMware Advance Troubleshooting Workshop - Day 3
VMware Advance Troubleshooting Workshop - Day 3
 
Vsicm51 m01 course_intro_
Vsicm51 m01 course_intro_Vsicm51 m01 course_intro_
Vsicm51 m01 course_intro_
 
VMWARE ESX
VMWARE ESXVMWARE ESX
VMWARE ESX
 
VMware Site Recovery Manager (SRM) 6.0 Lab Manual
VMware Site Recovery Manager (SRM) 6.0 Lab ManualVMware Site Recovery Manager (SRM) 6.0 Lab Manual
VMware Site Recovery Manager (SRM) 6.0 Lab Manual
 
VMware vCloud Director
VMware vCloud DirectorVMware vCloud Director
VMware vCloud Director
 
Transitioning to vmWare ESXi
Transitioning to vmWare ESXiTransitioning to vmWare ESXi
Transitioning to vmWare ESXi
 
VMware Advance Troubleshooting Workshop - Day 5
VMware Advance Troubleshooting Workshop - Day 5VMware Advance Troubleshooting Workshop - Day 5
VMware Advance Troubleshooting Workshop - Day 5
 
VMworld 2013: VMware vSphere High Availability - What's New and Best Practices
VMworld 2013: VMware vSphere High Availability - What's New and Best PracticesVMworld 2013: VMware vSphere High Availability - What's New and Best Practices
VMworld 2013: VMware vSphere High Availability - What's New and Best Practices
 
VMware Advance Troubleshooting Workshop - Day 4
VMware Advance Troubleshooting Workshop - Day 4VMware Advance Troubleshooting Workshop - Day 4
VMware Advance Troubleshooting Workshop - Day 4
 
VMware
VMwareVMware
VMware
 
VMware vSphere Version Comparison 4.0 to 6.5
VMware  vSphere Version Comparison 4.0 to 6.5VMware  vSphere Version Comparison 4.0 to 6.5
VMware vSphere Version Comparison 4.0 to 6.5
 
VMware vCloud Suite
VMware vCloud SuiteVMware vCloud Suite
VMware vCloud Suite
 
VMware vSphere 6 & Horizon View 6.1 – What's New ?
VMware vSphere 6 & Horizon View 6.1 – What's New ?VMware vSphere 6 & Horizon View 6.1 – What's New ?
VMware vSphere 6 & Horizon View 6.1 – What's New ?
 
VMware Advance Troubleshooting Workshop - Day 2
VMware Advance Troubleshooting Workshop - Day 2VMware Advance Troubleshooting Workshop - Day 2
VMware Advance Troubleshooting Workshop - Day 2
 

Similar to Active Directory for VMware vCenter 6.5

Windows 2012 R2 Multi Server Management
Windows 2012 R2 Multi Server ManagementWindows 2012 R2 Multi Server Management
Windows 2012 R2 Multi Server ManagementSharkrit JOBBO
 
VMworld 2013: vSphere Web Client - Technical Walkthrough
VMworld 2013: vSphere Web Client - Technical WalkthroughVMworld 2013: vSphere Web Client - Technical Walkthrough
VMworld 2013: vSphere Web Client - Technical WalkthroughVMworld
 
AWS Webcast - Launch & Learn: Amazon EC2 for Microsoft Windows Server
AWS Webcast - Launch & Learn: Amazon EC2 for Microsoft Windows ServerAWS Webcast - Launch & Learn: Amazon EC2 for Microsoft Windows Server
AWS Webcast - Launch & Learn: Amazon EC2 for Microsoft Windows ServerAmazon Web Services
 
Integrating SharePoint 2010, 2013 and Visual Studio Lightswitch by Rob Windso...
Integrating SharePoint 2010, 2013 and Visual Studio Lightswitch by Rob Windso...Integrating SharePoint 2010, 2013 and Visual Studio Lightswitch by Rob Windso...
Integrating SharePoint 2010, 2013 and Visual Studio Lightswitch by Rob Windso...SPTechCon
 
Virtualization Vs. Containers
Virtualization Vs. ContainersVirtualization Vs. Containers
Virtualization Vs. Containersactualtechmedia
 
Integrating your on-premises Active Directory with Azure and Office 365
Integrating your on-premises Active Directory with Azure and Office 365Integrating your on-premises Active Directory with Azure and Office 365
Integrating your on-premises Active Directory with Azure and Office 365nelmedia
 
OpenStack Webinar: Melting Pot in Virtualized Data Centers
OpenStack Webinar: Melting Pot in Virtualized Data CentersOpenStack Webinar: Melting Pot in Virtualized Data Centers
OpenStack Webinar: Melting Pot in Virtualized Data CentersPlatform9
 
vRealize Operation 7.5 What's new
vRealize Operation 7.5 What's newvRealize Operation 7.5 What's new
vRealize Operation 7.5 What's newKiss Tibor
 
Virtualisation Academy - Private Cloud
Virtualisation Academy - Private CloudVirtualisation Academy - Private Cloud
Virtualisation Academy - Private CloudAidan Finn
 
London VMUG - Upgrade vSphere 5.5 to 6.5
London VMUG - Upgrade vSphere 5.5 to 6.5London VMUG - Upgrade vSphere 5.5 to 6.5
London VMUG - Upgrade vSphere 5.5 to 6.5Dean Lewis
 
Instalacion de windows server 2012
Instalacion de windows server 2012Instalacion de windows server 2012
Instalacion de windows server 2012Salazar Jorge
 
Microsoft Azure: Deploy and Scale Modern Websites
Microsoft Azure: Deploy and Scale Modern WebsitesMicrosoft Azure: Deploy and Scale Modern Websites
Microsoft Azure: Deploy and Scale Modern WebsitesWinWire Technologies Inc
 
DevOps on Windows: How to Deploy Complex Windows Workloads | AWS Public Secto...
DevOps on Windows: How to Deploy Complex Windows Workloads | AWS Public Secto...DevOps on Windows: How to Deploy Complex Windows Workloads | AWS Public Secto...
DevOps on Windows: How to Deploy Complex Windows Workloads | AWS Public Secto...Amazon Web Services
 
Morning Coffee - Windows Server 2016
Morning Coffee - Windows Server 2016Morning Coffee - Windows Server 2016
Morning Coffee - Windows Server 2016Primend
 

Similar to Active Directory for VMware vCenter 6.5 (20)

Windows 2012 R2 Multi Server Management
Windows 2012 R2 Multi Server ManagementWindows 2012 R2 Multi Server Management
Windows 2012 R2 Multi Server Management
 
VMWare_resume
VMWare_resumeVMWare_resume
VMWare_resume
 
VMworld 2013: vSphere Web Client - Technical Walkthrough
VMworld 2013: vSphere Web Client - Technical WalkthroughVMworld 2013: vSphere Web Client - Technical Walkthrough
VMworld 2013: vSphere Web Client - Technical Walkthrough
 
AWS Webcast - Launch & Learn: Amazon EC2 for Microsoft Windows Server
AWS Webcast - Launch & Learn: Amazon EC2 for Microsoft Windows ServerAWS Webcast - Launch & Learn: Amazon EC2 for Microsoft Windows Server
AWS Webcast - Launch & Learn: Amazon EC2 for Microsoft Windows Server
 
Integrating SharePoint 2010, 2013 and Visual Studio Lightswitch by Rob Windso...
Integrating SharePoint 2010, 2013 and Visual Studio Lightswitch by Rob Windso...Integrating SharePoint 2010, 2013 and Visual Studio Lightswitch by Rob Windso...
Integrating SharePoint 2010, 2013 and Visual Studio Lightswitch by Rob Windso...
 
Virtualization Vs. Containers
Virtualization Vs. ContainersVirtualization Vs. Containers
Virtualization Vs. Containers
 
Integrating your on-premises Active Directory with Azure and Office 365
Integrating your on-premises Active Directory with Azure and Office 365Integrating your on-premises Active Directory with Azure and Office 365
Integrating your on-premises Active Directory with Azure and Office 365
 
OpenStack Webinar: Melting Pot in Virtualized Data Centers
OpenStack Webinar: Melting Pot in Virtualized Data CentersOpenStack Webinar: Melting Pot in Virtualized Data Centers
OpenStack Webinar: Melting Pot in Virtualized Data Centers
 
vRealize Operation 7.5 What's new
vRealize Operation 7.5 What's newvRealize Operation 7.5 What's new
vRealize Operation 7.5 What's new
 
KUMAR_RESUME_1_
KUMAR_RESUME_1_KUMAR_RESUME_1_
KUMAR_RESUME_1_
 
Virtualisation Academy - Private Cloud
Virtualisation Academy - Private CloudVirtualisation Academy - Private Cloud
Virtualisation Academy - Private Cloud
 
London VMUG - Upgrade vSphere 5.5 to 6.5
London VMUG - Upgrade vSphere 5.5 to 6.5London VMUG - Upgrade vSphere 5.5 to 6.5
London VMUG - Upgrade vSphere 5.5 to 6.5
 
vsphere5.5 to 6.5
vsphere5.5 to 6.5vsphere5.5 to 6.5
vsphere5.5 to 6.5
 
Instalacion de windows server 2012
Instalacion de windows server 2012Instalacion de windows server 2012
Instalacion de windows server 2012
 
Microsoft Azure: Deploy and Scale Modern Websites
Microsoft Azure: Deploy and Scale Modern WebsitesMicrosoft Azure: Deploy and Scale Modern Websites
Microsoft Azure: Deploy and Scale Modern Websites
 
Managed WordPress Demystified
Managed WordPress DemystifiedManaged WordPress Demystified
Managed WordPress Demystified
 
DevOps on Windows: How to Deploy Complex Windows Workloads | AWS Public Secto...
DevOps on Windows: How to Deploy Complex Windows Workloads | AWS Public Secto...DevOps on Windows: How to Deploy Complex Windows Workloads | AWS Public Secto...
DevOps on Windows: How to Deploy Complex Windows Workloads | AWS Public Secto...
 
Into The Box 2019 - Keynote Day 2
Into The Box 2019 - Keynote Day 2Into The Box 2019 - Keynote Day 2
Into The Box 2019 - Keynote Day 2
 
ITB2019 Keynotes Day 2 - Ortus Team
ITB2019 Keynotes Day 2 - Ortus TeamITB2019 Keynotes Day 2 - Ortus Team
ITB2019 Keynotes Day 2 - Ortus Team
 
Morning Coffee - Windows Server 2016
Morning Coffee - Windows Server 2016Morning Coffee - Windows Server 2016
Morning Coffee - Windows Server 2016
 

More from Tuan Yang

Learn How to Configure Cisco Data Center Core Networking(Handouts).pdf
Learn How to Configure Cisco Data Center Core Networking(Handouts).pdfLearn How to Configure Cisco Data Center Core Networking(Handouts).pdf
Learn How to Configure Cisco Data Center Core Networking(Handouts).pdfTuan Yang
 
Best Practices to Cybersecurity Vulnerability Management,.pdf
Best Practices to Cybersecurity Vulnerability Management,.pdfBest Practices to Cybersecurity Vulnerability Management,.pdf
Best Practices to Cybersecurity Vulnerability Management,.pdfTuan Yang
 
Defense Against Multi-Network Breaches.pdf
Defense Against Multi-Network Breaches.pdfDefense Against Multi-Network Breaches.pdf
Defense Against Multi-Network Breaches.pdfTuan Yang
 
Cybersecurity Incident Handling & Response in Under 40 Minutes.pdf
Cybersecurity Incident Handling & Response in Under 40 Minutes.pdfCybersecurity Incident Handling & Response in Under 40 Minutes.pdf
Cybersecurity Incident Handling & Response in Under 40 Minutes.pdfTuan Yang
 
An Introduction to CompTIA Security+ - SY0-601.pdf
An Introduction to CompTIA Security+ - SY0-601.pdfAn Introduction to CompTIA Security+ - SY0-601.pdf
An Introduction to CompTIA Security+ - SY0-601.pdfTuan Yang
 
CCNP Enterprise Networks Move One Step Closer to Advanced Networking(Handout)...
CCNP Enterprise Networks Move One Step Closer to Advanced Networking(Handout)...CCNP Enterprise Networks Move One Step Closer to Advanced Networking(Handout)...
CCNP Enterprise Networks Move One Step Closer to Advanced Networking(Handout)...Tuan Yang
 
What is New with CompTIA Network+.pdf
What is New with CompTIA Network+.pdfWhat is New with CompTIA Network+.pdf
What is New with CompTIA Network+.pdfTuan Yang
 
What is new with CompTIA PenTest+- PT0 002 - NetCom Learning.pdf
What is new with CompTIA PenTest+- PT0 002 - NetCom Learning.pdfWhat is new with CompTIA PenTest+- PT0 002 - NetCom Learning.pdf
What is new with CompTIA PenTest+- PT0 002 - NetCom Learning.pdfTuan Yang
 
Agile Fundamentals One Step Guide for Agile Projects(Handout).pdf
Agile Fundamentals One Step Guide for Agile Projects(Handout).pdfAgile Fundamentals One Step Guide for Agile Projects(Handout).pdf
Agile Fundamentals One Step Guide for Agile Projects(Handout).pdfTuan Yang
 
Getting Started with AWS Devops.pdf
Getting Started with AWS Devops.pdfGetting Started with AWS Devops.pdf
Getting Started with AWS Devops.pdfTuan Yang
 
Certified Ethical Hacker v11 First Look.pdf
Certified Ethical Hacker v11 First Look.pdfCertified Ethical Hacker v11 First Look.pdf
Certified Ethical Hacker v11 First Look.pdfTuan Yang
 
An overview of agile methods and agile project management
An overview of agile methods and agile project management An overview of agile methods and agile project management
An overview of agile methods and agile project management Tuan Yang
 
The essentials of ccna master the latest principles(handouts)
The essentials of ccna master the latest principles(handouts)The essentials of ccna master the latest principles(handouts)
The essentials of ccna master the latest principles(handouts)Tuan Yang
 
Unlock the value of itil 4 with 5 key takeaways that can be used today(handout)
Unlock the value of itil 4 with 5 key takeaways that can be used today(handout)Unlock the value of itil 4 with 5 key takeaways that can be used today(handout)
Unlock the value of itil 4 with 5 key takeaways that can be used today(handout)Tuan Yang
 
CHFI First Look by NetCom Learning - A Free Course on Digital Forensics
CHFI First Look by NetCom Learning - A Free Course on Digital ForensicsCHFI First Look by NetCom Learning - A Free Course on Digital Forensics
CHFI First Look by NetCom Learning - A Free Course on Digital ForensicsTuan Yang
 
Master Class: Understand the Fundamentals of Architecting on AWS
Master Class: Understand the Fundamentals of Architecting on AWSMaster Class: Understand the Fundamentals of Architecting on AWS
Master Class: Understand the Fundamentals of Architecting on AWSTuan Yang
 
How to Deploy Microsoft 365 Apps and Workloads.
How to Deploy Microsoft 365 Apps and Workloads.How to Deploy Microsoft 365 Apps and Workloads.
How to Deploy Microsoft 365 Apps and Workloads.Tuan Yang
 
Learn to utilize cisco unified communications for better collaboration( hando...
Learn to utilize cisco unified communications for better collaboration( hando...Learn to utilize cisco unified communications for better collaboration( hando...
Learn to utilize cisco unified communications for better collaboration( hando...Tuan Yang
 
NetCom learning webinar how to manage your projects with disciplined agile (d...
NetCom learning webinar how to manage your projects with disciplined agile (d...NetCom learning webinar how to manage your projects with disciplined agile (d...
NetCom learning webinar how to manage your projects with disciplined agile (d...Tuan Yang
 
NetCom learning webinar cnd first look by netcom learning - network defender fre
NetCom learning webinar cnd first look by netcom learning - network defender freNetCom learning webinar cnd first look by netcom learning - network defender fre
NetCom learning webinar cnd first look by netcom learning - network defender freTuan Yang
 

More from Tuan Yang (20)

Learn How to Configure Cisco Data Center Core Networking(Handouts).pdf
Learn How to Configure Cisco Data Center Core Networking(Handouts).pdfLearn How to Configure Cisco Data Center Core Networking(Handouts).pdf
Learn How to Configure Cisco Data Center Core Networking(Handouts).pdf
 
Best Practices to Cybersecurity Vulnerability Management,.pdf
Best Practices to Cybersecurity Vulnerability Management,.pdfBest Practices to Cybersecurity Vulnerability Management,.pdf
Best Practices to Cybersecurity Vulnerability Management,.pdf
 
Defense Against Multi-Network Breaches.pdf
Defense Against Multi-Network Breaches.pdfDefense Against Multi-Network Breaches.pdf
Defense Against Multi-Network Breaches.pdf
 
Cybersecurity Incident Handling & Response in Under 40 Minutes.pdf
Cybersecurity Incident Handling & Response in Under 40 Minutes.pdfCybersecurity Incident Handling & Response in Under 40 Minutes.pdf
Cybersecurity Incident Handling & Response in Under 40 Minutes.pdf
 
An Introduction to CompTIA Security+ - SY0-601.pdf
An Introduction to CompTIA Security+ - SY0-601.pdfAn Introduction to CompTIA Security+ - SY0-601.pdf
An Introduction to CompTIA Security+ - SY0-601.pdf
 
CCNP Enterprise Networks Move One Step Closer to Advanced Networking(Handout)...
CCNP Enterprise Networks Move One Step Closer to Advanced Networking(Handout)...CCNP Enterprise Networks Move One Step Closer to Advanced Networking(Handout)...
CCNP Enterprise Networks Move One Step Closer to Advanced Networking(Handout)...
 
What is New with CompTIA Network+.pdf
What is New with CompTIA Network+.pdfWhat is New with CompTIA Network+.pdf
What is New with CompTIA Network+.pdf
 
What is new with CompTIA PenTest+- PT0 002 - NetCom Learning.pdf
What is new with CompTIA PenTest+- PT0 002 - NetCom Learning.pdfWhat is new with CompTIA PenTest+- PT0 002 - NetCom Learning.pdf
What is new with CompTIA PenTest+- PT0 002 - NetCom Learning.pdf
 
Agile Fundamentals One Step Guide for Agile Projects(Handout).pdf
Agile Fundamentals One Step Guide for Agile Projects(Handout).pdfAgile Fundamentals One Step Guide for Agile Projects(Handout).pdf
Agile Fundamentals One Step Guide for Agile Projects(Handout).pdf
 
Getting Started with AWS Devops.pdf
Getting Started with AWS Devops.pdfGetting Started with AWS Devops.pdf
Getting Started with AWS Devops.pdf
 
Certified Ethical Hacker v11 First Look.pdf
Certified Ethical Hacker v11 First Look.pdfCertified Ethical Hacker v11 First Look.pdf
Certified Ethical Hacker v11 First Look.pdf
 
An overview of agile methods and agile project management
An overview of agile methods and agile project management An overview of agile methods and agile project management
An overview of agile methods and agile project management
 
The essentials of ccna master the latest principles(handouts)
The essentials of ccna master the latest principles(handouts)The essentials of ccna master the latest principles(handouts)
The essentials of ccna master the latest principles(handouts)
 
Unlock the value of itil 4 with 5 key takeaways that can be used today(handout)
Unlock the value of itil 4 with 5 key takeaways that can be used today(handout)Unlock the value of itil 4 with 5 key takeaways that can be used today(handout)
Unlock the value of itil 4 with 5 key takeaways that can be used today(handout)
 
CHFI First Look by NetCom Learning - A Free Course on Digital Forensics
CHFI First Look by NetCom Learning - A Free Course on Digital ForensicsCHFI First Look by NetCom Learning - A Free Course on Digital Forensics
CHFI First Look by NetCom Learning - A Free Course on Digital Forensics
 
Master Class: Understand the Fundamentals of Architecting on AWS
Master Class: Understand the Fundamentals of Architecting on AWSMaster Class: Understand the Fundamentals of Architecting on AWS
Master Class: Understand the Fundamentals of Architecting on AWS
 
How to Deploy Microsoft 365 Apps and Workloads.
How to Deploy Microsoft 365 Apps and Workloads.How to Deploy Microsoft 365 Apps and Workloads.
How to Deploy Microsoft 365 Apps and Workloads.
 
Learn to utilize cisco unified communications for better collaboration( hando...
Learn to utilize cisco unified communications for better collaboration( hando...Learn to utilize cisco unified communications for better collaboration( hando...
Learn to utilize cisco unified communications for better collaboration( hando...
 
NetCom learning webinar how to manage your projects with disciplined agile (d...
NetCom learning webinar how to manage your projects with disciplined agile (d...NetCom learning webinar how to manage your projects with disciplined agile (d...
NetCom learning webinar how to manage your projects with disciplined agile (d...
 
NetCom learning webinar cnd first look by netcom learning - network defender fre
NetCom learning webinar cnd first look by netcom learning - network defender freNetCom learning webinar cnd first look by netcom learning - network defender fre
NetCom learning webinar cnd first look by netcom learning - network defender fre
 

Recently uploaded

A Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptxA Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptxLoriGlavin3
 
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc
 
Emixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native developmentEmixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native developmentPim van der Noll
 
The State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxThe State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxLoriGlavin3
 
Bridging Between CAD & GIS: 6 Ways to Automate Your Data Integration
Bridging Between CAD & GIS:  6 Ways to Automate Your Data IntegrationBridging Between CAD & GIS:  6 Ways to Automate Your Data Integration
Bridging Between CAD & GIS: 6 Ways to Automate Your Data Integrationmarketing932765
 
Connecting the Dots for Information Discovery.pdf
Connecting the Dots for Information Discovery.pdfConnecting the Dots for Information Discovery.pdf
Connecting the Dots for Information Discovery.pdfNeo4j
 
QCon London: Mastering long-running processes in modern architectures
QCon London: Mastering long-running processes in modern architecturesQCon London: Mastering long-running processes in modern architectures
QCon London: Mastering long-running processes in modern architecturesBernd Ruecker
 
Genislab builds better products and faster go-to-market with Lean project man...
Genislab builds better products and faster go-to-market with Lean project man...Genislab builds better products and faster go-to-market with Lean project man...
Genislab builds better products and faster go-to-market with Lean project man...Farhan Tariq
 
[Webinar] SpiraTest - Setting New Standards in Quality Assurance
[Webinar] SpiraTest - Setting New Standards in Quality Assurance[Webinar] SpiraTest - Setting New Standards in Quality Assurance
[Webinar] SpiraTest - Setting New Standards in Quality AssuranceInflectra
 
Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Hiroshi SHIBATA
 
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...Wes McKinney
 
Varsha Sewlal- Cyber Attacks on Critical Critical Infrastructure
Varsha Sewlal- Cyber Attacks on Critical Critical InfrastructureVarsha Sewlal- Cyber Attacks on Critical Critical Infrastructure
Varsha Sewlal- Cyber Attacks on Critical Critical Infrastructureitnewsafrica
 
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesHow to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesThousandEyes
 
Top 10 Hubspot Development Companies in 2024
Top 10 Hubspot Development Companies in 2024Top 10 Hubspot Development Companies in 2024
Top 10 Hubspot Development Companies in 2024TopCSSGallery
 
A Framework for Development in the AI Age
A Framework for Development in the AI AgeA Framework for Development in the AI Age
A Framework for Development in the AI AgeCprime
 
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024BookNet Canada
 
A Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersA Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersNicole Novielli
 
React Native vs Ionic - The Best Mobile App Framework
React Native vs Ionic - The Best Mobile App FrameworkReact Native vs Ionic - The Best Mobile App Framework
React Native vs Ionic - The Best Mobile App FrameworkPixlogix Infotech
 
Generative Artificial Intelligence: How generative AI works.pdf
Generative Artificial Intelligence: How generative AI works.pdfGenerative Artificial Intelligence: How generative AI works.pdf
Generative Artificial Intelligence: How generative AI works.pdfIngrid Airi González
 
Moving Beyond Passwords: FIDO Paris Seminar.pdf
Moving Beyond Passwords: FIDO Paris Seminar.pdfMoving Beyond Passwords: FIDO Paris Seminar.pdf
Moving Beyond Passwords: FIDO Paris Seminar.pdfLoriGlavin3
 

Recently uploaded (20)

A Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptxA Deep Dive on Passkeys: FIDO Paris Seminar.pptx
A Deep Dive on Passkeys: FIDO Paris Seminar.pptx
 
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data PrivacyTrustArc Webinar - How to Build Consumer Trust Through Data Privacy
TrustArc Webinar - How to Build Consumer Trust Through Data Privacy
 
Emixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native developmentEmixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native development
 
The State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptxThe State of Passkeys with FIDO Alliance.pptx
The State of Passkeys with FIDO Alliance.pptx
 
Bridging Between CAD & GIS: 6 Ways to Automate Your Data Integration
Bridging Between CAD & GIS:  6 Ways to Automate Your Data IntegrationBridging Between CAD & GIS:  6 Ways to Automate Your Data Integration
Bridging Between CAD & GIS: 6 Ways to Automate Your Data Integration
 
Connecting the Dots for Information Discovery.pdf
Connecting the Dots for Information Discovery.pdfConnecting the Dots for Information Discovery.pdf
Connecting the Dots for Information Discovery.pdf
 
QCon London: Mastering long-running processes in modern architectures
QCon London: Mastering long-running processes in modern architecturesQCon London: Mastering long-running processes in modern architectures
QCon London: Mastering long-running processes in modern architectures
 
Genislab builds better products and faster go-to-market with Lean project man...
Genislab builds better products and faster go-to-market with Lean project man...Genislab builds better products and faster go-to-market with Lean project man...
Genislab builds better products and faster go-to-market with Lean project man...
 
[Webinar] SpiraTest - Setting New Standards in Quality Assurance
[Webinar] SpiraTest - Setting New Standards in Quality Assurance[Webinar] SpiraTest - Setting New Standards in Quality Assurance
[Webinar] SpiraTest - Setting New Standards in Quality Assurance
 
Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024Long journey of Ruby standard library at RubyConf AU 2024
Long journey of Ruby standard library at RubyConf AU 2024
 
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
 
Varsha Sewlal- Cyber Attacks on Critical Critical Infrastructure
Varsha Sewlal- Cyber Attacks on Critical Critical InfrastructureVarsha Sewlal- Cyber Attacks on Critical Critical Infrastructure
Varsha Sewlal- Cyber Attacks on Critical Critical Infrastructure
 
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesHow to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
 
Top 10 Hubspot Development Companies in 2024
Top 10 Hubspot Development Companies in 2024Top 10 Hubspot Development Companies in 2024
Top 10 Hubspot Development Companies in 2024
 
A Framework for Development in the AI Age
A Framework for Development in the AI AgeA Framework for Development in the AI Age
A Framework for Development in the AI Age
 
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
 
A Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersA Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software Developers
 
React Native vs Ionic - The Best Mobile App Framework
React Native vs Ionic - The Best Mobile App FrameworkReact Native vs Ionic - The Best Mobile App Framework
React Native vs Ionic - The Best Mobile App Framework
 
Generative Artificial Intelligence: How generative AI works.pdf
Generative Artificial Intelligence: How generative AI works.pdfGenerative Artificial Intelligence: How generative AI works.pdf
Generative Artificial Intelligence: How generative AI works.pdf
 
Moving Beyond Passwords: FIDO Paris Seminar.pdf
Moving Beyond Passwords: FIDO Paris Seminar.pdfMoving Beyond Passwords: FIDO Paris Seminar.pdf
Moving Beyond Passwords: FIDO Paris Seminar.pdf
 

Active Directory for VMware vCenter 6.5

  • 1. Active Directory for VMware vCenter 6.5
  • 3. NetCom Learning – Managed Learning Services
  • 4.
  • 5. Agenda • Introductions • About the VMware vSphere 6.5 Boot Camp • Active Directory for vCenter 6.5 • The evolution of vCenter and Directory-based authentication • What is VMware vCenter SSO? • Two ways to integrate vCenter SSO with Active Directory • Method one: Integrating vCenter with AD using the Machine Account • Method two: Integrating vCenter with AD using LDAP
  • 6. VMware vSphere 6.5 Boot Camp Practical VMware Training • What you need to know to use vSphere • Current materials • Real World Best Practices
  • 7. Our Practical vSphere Boot Camp is like no other • You have your own enterprise-grade VDI for access • You work live, with your own ESXi Host and vCenter Server • You get your own LUN/Volume on an Enterprise SAN • You have 24X7 Access to your lab environment • Your instructor can see your VDI and help you 1-on-1 during class • Boot Camp Class • 6/19/17 – 6/23/17 Las Vegas
  • 8. Real-world lab steps • These methods are taken directly from methods we learn as consultants in Real-World situations • Every participant in the Boot Camp will have the opportunity to fully participate using their own vCenter!
  • 9. VMware vSphere 6.5 SSO The evolution of directory-based authentication for VMware vCenter
  • 10. VMware vCenter 5 and before • VMware vCenter 5 and prior versions were always a subset of a single Active Directory domain • Active Directory was required to install vCenter • vCenter Server was a Windows-only service • Domain Admins of the AD domain were always vSphere Administrators by default!
  • 11. vCenter in the age of Cloud Computing • vCenter 5.5 and later versions have their own directory called vCenter SSO • Based on MIT Kerberos (same as AD) • Full configurable as a standalone directory with Users and Groups • Password aging and complexity configuration possible • Smart Card and two-factor configuration possible
  • 12. Advantages of vCenter SSO • AD is no longer required to install vCenter • The main requirement for SSO is functioning forward and reverse DNS • VMware vCenter now a potential superset of many AD Domains • Can add multiple Active Directory Domains and LDAP directories • External directories are used as Identity Sources • External directories remain completely independent • Domain Admins no longer receive vCenter Administrator permission by default • Only one SSO administrator is created during installation • You add other users and Identity sources at your discretion.
  • 13. Integrating vCenter and Active Directory Method 1: Using the Machine Account
  • 14. Method 1: Using the Machine Account • Possible with both Windows vCenter and VCSA Appliance (Linux) • Host Operating System must be joined to the domain • Creates a dependency between the Host Operating System where vCenter runs and the AD Domain
  • 15. Method 1: Using the Machine Account • Join the Domain 1. In the Navigator bar on the left side of the screen, click on Administration.
  • 16. Using the Machine Account with SSO 2. Now click on System Configuration
  • 17. Method 1: Using the Machine Account 3. Click on Nodes.
  • 18. Method 1: Using the Machine Account 4. Choose your vCenter Node and then click on Active Directory.
  • 19. Method 1: Using the Machine Account 5. Enter the Domain, OU, User and password
  • 20. Method 1: Using the Machine Account 6. Reboot your vCenter / VCSA
  • 21. Method 1: Using the Machine Account 7. Now click on Configuration and then on Identity Sources a. Click the +
  • 22. Method 1: Using the Machine Account 8. Choose Active Directory (Integrated Windows Authentication)
  • 23. Integrating vCenter and Active Directory Method 2: Using Active Directory LDAP
  • 24. Method 2: Using Active Directory LDAP • Possible with both Windows vCenter and VCSA Appliance (Linux) • Host Operating System does not need to be joined to the domain • Does not create a dependency between the Host Operating System where vCenter runs and the Domain • All LDAP Identity sources remain completely independent • Many fewer steps overall
  • 25. Method 2: Using Active Directory LDAP 1. In the Web-Client, click on Home and then on Administration
  • 26. Using Active Directory as an LDAP Server 2. Now click on Configuration and then on Identity Sources a. Click the +
  • 27. Using Active Directory as an LDAP Server 3. Choose Active Directory as an LDAP Server
  • 28. Using Active Directory as an LDAP Server 4. Enter all of the information in LDAP format
  • 30. SSO Global Permissions • Configuration is the same for: • Windows vCenter • VCSA • Domain-joined • AD as an LDAP server
  • 31. SSO Global Permissions 1. Choose Global Permissions > Manage > click on +
  • 32. SSO Global Permissions 2. It’s now possible to add Users/Groups/OUs from the Domain(s) configured a. Choose the AD Domain/LDAP Directory b. Locate the User/Group c. Click Add d. Click OK
  • 33. SSO Global Permissions 3. And assign any/all desired Roles a. Select the Role (Administrator) b. Click Add c. Click OK
  • 34. vCenter SSO • No matter if it is a Windows vCenter, VCSA, Domain-joined or LDAP • You can now log in with directory credentials • BEST PRACTICE: Do not “Use Windows Session authentication” • BEST PRACTICE: Enter username in UPN format: user@domain.tld
  • 35. Upcoming vSphere Classes Webinars • Webinars • Boot Camp Class • 6/19/17 – 6/23/17 Las Vegas • 8/14/17 – 8/18/17 New York
  • 36. Watch the Live Demonstration Watch the recorded webinar here!
  • 37. Recommended Courses NetCom Learning offers a comprehensive portfolio for VMware vSphere training options. Please see below the list of recommended courses: VMsources VMware vSphere 6.5 Infrastructure Deployment Prep Boot Camp Check out more VMware vSphere training options with NetCom Learning – CLICK HERE
  • 38. Our live webinars will help you to touch base a wide variety of IT, soft skills and business productivity topics; and keep you up to date on the latest IT industry trends. Register now for our upcoming webinars: Raise your defenses against Malware & Ransomware attacks – May 8 Understanding the Windows Server Administration Fundamentals (Part-1) – June 13 Microsoft Word Power Shortcuts & Tips (Part-2) – June 15 Your Quick Guide to PMP Certification and Examination – June 20 Understanding the Windows Server Administration Fundamentals (Part-1) – June 27
  • 39. Special Promotion Whether you're learning new IT or Business skills, or you are developing a learning plan for your team, now you can register for our Guaranteed to Run classes with confidence. From Microsoft, to CompTIA, to CISSP; all classes delivered by top-notch instructors in in- person Instructor-led Classroom or Live Online. Learn more»
  • 40. Special Promotion Is the internet secure? It becomes a matter of deep introspection whether the internet remains a safe place for us with all our personal and official data on it. Take a proactive stance on security. It is time to wake up and begin preparing a defense for the future. Acquire the skillset, become certified cybersecurity professional. Learn more»
  • 41. Special Promotion Trial Version & 10% First Time User discount on Soft Skills E-Learning Courses (Limited Period Offer, Register NOW) Log onto www.sarderlearning.com Coupon Code: SARDER10
  • 42. 3500+ BYTE SIZE VIDEOS 200+ MENTORS 100+ COURSES Leadership focused programs across Functions, Management levels, & Industries Business Productivity programs enabling professionals master the latest concepts Soft skills programs ensuring the basics of management success Best selling books focused programs covering all aspects of professional & personal lives Premium programs such as Board-Series www.sarderlearning.com Course Categories Anywhere Anytime Learning across Devices & Operating Systems
  • 43. Media Platform with a blend of Charlie Rose & TED Headquartered in New York, the platform publishes Exclusive High Quality Video Content from Fortune 1000 Corporate Leaders, Best Selling Authors & Ivy League Professors With a purpose to "Promote Learning", the Platform is based on the Core values of Continuous Learning, Innovation & Performance. Get the latest insights on Management, Strategy, Marketing, Sales, Innovation and Entrepreneurship. www.sardertv.com To get the latest insights on the Business World
  • 44. To get latest technology updates, please follow our social media pages!
  • 45.
  • 46. THANK YOU !!! We manage learning. “Building an Innovative Learning Organization. A Framework to Build a Smarter Workforce, Adapt to Change, and Drive Growth”. Download now!

Editor's Notes

  1. Welcome to Netcom Learning’s VMware vSphere Webinar series Today we’re going to introduce ourselves, then tell you just a little bit about our VMware vSphere Boot Camp And then jump right into the topic: Active Directory for VMware vSphere First, we’ll explain what VMware vCenter SSO is Then we will show you two ways to integrate your vCenter with Active Directory
  2. Our practical, real-world VMware training is designed specifically to teach what you need to know to install, run, maintain and update VMware vSphere. Our Boot Camp materials are current to the most recent release of VMware vSphere and always have an emphasis on Best Practices and Real world techniques. In class we teach you how to use, manage and diagnose VMware vSphere as a whole and do not fixate on the most expensive options and features available to only a percentage of users.
  3. During class, each student has access to real (physical) servers in a real data center, where you will build your own VMware vSphere environment. At every stage of the process, you will be working live, with equipment specifically assigned to you for the duration of class. You’ll have 24 by 7 access to your resources in the class lab, and you can request up to two additional weeks of access to your lab at NO EXTRA COST! Bottom line is: If you need to improve your skills with VMware vSphere, there’s no better choice than the Netcom VMware vSphere Boot Camp!
  4. The procedures and methods we are going to go over in this webinar were taken right from our experience as active consultants. In class, you will have the opportunity to explore both methods of using AD with vCenter, using your own vCenter Server!
  5. VMware vCenter 5 and prior versions were Windows-only applications that required Active Directory to install. Domain Admins of the AD Domain where vCenter was installed, became vCenter Administrators by default. As you can imagine, in larger organizations with multiple “silos,” AD administrators may not be qualified on VMware and VMware admins may not be authorized for AD administration.
  6. VMware vCenter SSO was actually introduced with version 5.1, but it was a non-functional mess with plaintext passwords and complex installation requiring manual creation of database tables in SQL! Beginning with vCenter 5.5, VMware vCenter SSO became fully-functional as an independent implementation of MIT Kerberos. In SSO, it is possible to create Users and Groups, just like any other directory. It’s also possible to configure aging, password complexity, and two-factor authentication to be compliant with most any standards such as SSAE 16 and ISO 27001
  7. One of the notable advantages of vCenter 5.5 and later versions is that Active Directory is no longer required as a prerequisite for installation, only functioning forward and reverse DNS. This means non-Windows shops no longer have to keep one or two licensed editions of Windows Server just to run vSphere! The biggest advantage is that VMware vCenter Server is no longer a subset of a single AD Domain, but potentially a superset of many AD Domains, all authenticating against vCenter SSO independently. Moreover, the VMware vCenter SSO administrator is created at the time of installation (administrator@vsphere.local or other TLD you create), and is the ONLY default vCenter administrator. In larger organizations, this is very important, because Domain Administrators not qualified on VMware, will not be granted default access.
  8. The most common, yet disadvantageous, method of integrating VMware vCenter SSO and AD is by using the Machine Account of the vCenter Server. This means, joining either the Windows OS or the SUSE Linux OS to the AD Domain where it is hosted. Joining a Windows server to a Domain is common-practice. Joining the VCSA to a Domain is easy and done entirely in the GUI. Both require a reboot. The problem is that this creates a potential “chicken-and-egg” dependency between the AD Domain and the Operating System where vCenter Server is hosted. You wouldn’t want to encounter a situation where AD had failed and you couldn’t access vCenter to recover it!
  9. To join the VCSA to an AD Domain, click on: Administration
  10. Then click on: System Configuration
  11. Click on: Nodes
  12. Then locate your vCenter node. Most likely, it will be the only choice.
  13. Enter credentials authorized to join the AD Domain, preferably in UPN format
  14. And reboot your VCSA
  15. After the system has rebooted, choose: Configuration Then click the tab: Identity Sources
  16. Now choose: Active Directory (Integrated Windows Authentication), followed by: Finish Your vCenter and Active Directory are now integrated, but we have yet to create a default permission
  17. The best way to integrate vCenter SSO with Active Directory (or any directory) is to use LDAP / LDAPs In this way, vCenter becomes a client of the directory(ies) that need to authenticate against vCenter No dependencies are created, and vCenter can run entirely independently of any domain
  18. Click on: Administration
  19. Choose: Configuration then click the tab: Identity Sources
  20. Now choose: Active Directory as an LDAP Server
  21. Enter all of the information in LDAP format, as we show you in the screenshot. If DNS is working correctly, you will not need to pprovide the address of a specific LDAP Server. Your vCenter is now integrated with one AD Domain. You can add more if required or desirable simply by repeating the process. To use Active Directory, however, we must create a default permission.
  22. Once the connection between vCenter and AD is established, no matter how it is created, the steps to create the first Global Permission allowing users of that directory to manage vCenter is the same.
  23. Click on: Global Permissions Then choose the tab: Manage And finally, click on the: +
  24. Now you can choose the AD Domain Followed by searching or browsing for the user/group you would like to add Then click on: Add And finally: OK
  25. Once the Directory user is added, you chose the Role, which will allow the user limited ot total access to the vCenter Server In class, we go over how to create and use Roles in detail, to delegate authority to Silos such as “desktop support” or “Linux”, as well as create completely independent multi-tennancy environments.
  26. Now you are ready to use your directory! We recommend to never “Use Windows Session Credentials” as it requires the “Client Integration Plugin” to the browser, which has had numerous documented vulnerabilities We recommend using UPN format usernames wherever possible, in vSphere and in general IP practice.
  27. Don’t Forget, we have a Boot Camp in just TWO Weeks in Las Vegas, Followed by a class on August 14 in New York City
  28. Further, if your interested in “Learning from the Top American Leaders”, please logon to the e-learning platform - www.sarderlearning.com. Avail the special promotion meant for FIRST TIME USERS. Use your coupon code – SARDER10 and begin your leadership journey. Now!!
  29. Sarder Learning is a micro-learning knowledge platform that brings the world’s best Fortune 500 companies CXOs, Ivy League professors and best selling authors together to share industry –wide best practices related to leadership & management. Sarder Learning under 13 different categories has a rapidly growing course library relevant across multiple domains with well defined specific learning paths and scenario –based learning. An intuitive and responsive learning management system environment makes it easy to track one’s learning journey take courses at convinence
  30. To get your dose of Latest Business Insights FROM Corporate America, logonto Sardertv.com. Don’t forget to register for our newsletter.
  31. I’d like to thank the team members that were part of this webinar: Swedha Sarah Gaurav Ben Ankuna vashali &special thanks to Chief Engineer Mina Henery from IBM Germany for his valuable support