Setup guide
Prerequisites
n
You must have a vCenter Server user account with administrative access to synchronize vShield
Manager with the vCenter Server . If your vCenter password has non-Ascii characters, you must change
it before synchronizing the vShield Manager with the vCenter Server.
n
To use SSO on vShield Manager, you must have vCenter Server 5.1 or above and single sign on service
must be installed on the vCenter Server.
Procedure
1 Log in to the vShield Manager.
2 Click Settings & Reports from the vShield Manager inventory panel.
3 Click the Configuration tab.
4 The DNS Servers area displays the IP addresses of the DNS servers you specified when you configured
the network settings of the vShield Manager.
You can edit the servers if required.
5 In NTP Server, click Edit and type the IP address of your NTP server.
The NTP server establishes a common network time. It is recommended that you use the NTP server
used by the SSO server so that the time on the vShield Manager server is in synch with the NTP server.
IMPORTANT You must reboot the vShield Manager after editing the NTP server details.
6 In Lookup Service, click Edit and type the host name or IP address of the host that has the lookup
service.
7 Change the port number if required.
The Lookup Service URL is displayed based on the specified host and port.
8 Type the SSO user name and password.
This enables vShield Manager to register itself on the Security Token Service server.
9 In vCenter Server, type the IP address or hostname of your vCenter Server.
10 Type your vSphere Client login user name.
11 Type the password associated with the user name.
12 To assign the Enterprise Administrator role to the user you have logged in as, select Assign vShield
Enterprise Administrator role to this user.
This role gives vShield operations and security permissions to the user.
13 To modify the plug-in script download location, select Modify plug-in script download location and
type the vShield Manager IP address and port number.
This may be required for NAT environments. By default, the vShield Manager address used is
vShield_Manager_IP:443.
14 Click Save.
15 (Optional) On a Windows server computer, perform the following steps to load the vShield Manager
inventory panel:
a Open Internet Explorer.
b Select Tools > Internet Options.
c In the Internet Option window, select the Security tab.
d Click Trusted sites.
Chapter 3 Installing the vShield Manager
VMware, Inc. 21