Administration

Table Of Contents
Table 5-3. vdmutil truesso Command Options for Managing Connectors
Options Description
--create --connector --domain
domain-
fqdn
--template
template-name
--primaryEnrollmentServer
enroll-server1-
fqdn
[
--secondaryEnrollmentServer
enroll-
server2-fqdn
] --certificateServer
CA-
common-name
--mode {enabled |disabled}
Creates a connector for the specified domain and configures the
connector to use the following settings:
n
template-name
is the name of the certificate template to use.
n
enroll-server1-fqdn
is the FQDN of the primary enrollment server
to use.
n
enroll-server2-fqdn
is the FQDN of the secondary enrollment
server to use. This setting is optional.
n
CA-common-name
is the common name of the certificate
authority to use. This can be a comma-separated list of CAs.
To determine which certificate template and certificate
authority are available for a particular enrollment
server, you can run the vdmutil command with the
--truesso --environment --list --enrollmentServer
enroll-server-
fqdn
--domain
domain-fqdn
options.
--list --connector Lists the FQDNs of the domains that already have a connector
created.
--list --connector --verbose Lists all the domains that have connectors, and for each connector,
provides the following information:
n Primary enrollment server
n Secondary enrollment server, if there is one
n Name of the certificate template
n Whether the connector is enabled or disabled
n Common name of the certificate authority server or servers, if
there are more than one
--edit --connector
domain-fqdn
[--template
template-name
] [--mode {enabled |disabled]
[--primaryEnrollmentServer
enroll-server1-
fqdn
] [
--secondaryEnrollmentServer
enroll-
server2-fqdn
] [--certificateServer
CA-
common-name
]
For the connector created for the domain specified by
domain-fqdn
,
allows you to change any of the following settings:
n
template-name
is the name of the certificate template to use.
n The mode can be either enabled or disabled.
n
enroll-server1-fqdn
is the FQDN of the primary enrollment server
to use.
n
enroll-server2-fqdn
is the FQDN of the secondary enrollment
server to use. This setting is optional.
n
CA-common-name
is the common name of the certificate
authority to use. This can be a comma-separated list of CAs.
--delete --connector
domain-fqdn
Deletes the connector that has been created for the domain specified
by
domain-fqdn
.
Commands for Managing Authenticators
Authenticators are created when you configure SAML authentication between VMware Identity
Manager or Unified Access Gateway (UAG) and a Connection Server. The only management task is
to enable or disable True SSO for the authenticator.
Horizon 7 Administration
VMware, Inc. 114