Administration

Table Of Contents
Table 52. vdmutil truesso Command Options for Managing Enrollment Servers (Continued)
Command and Options Description
--environment --list --enrollmentServer
enroll-server-fqdn
List s the FQDNs of the domains and forests that are trusted by the
domains and forests to which the enrollment server belongs, and the
state of the enrollment certificate, which can be VALID or INVALID. VALID
means the enrollment server has an Enrollment Agent certificate
installed. The state might be INVALID for any of several reasons:
n
The certificate has not been installed.
n
The certificate Is not yet valid, or has expired.
n
The certificate was not issued by a trusted Enterprise CA.
n
The private key is not available.
n
The certificate has been corrupted.
The log file on the enrollment server can provide the reason for the
INVALID state.
--environment --list --enrollmentServer
enroll-server-fqdn --domain domain-fqdn
For the enrollment server in the specified domain, lists the CNs (common
names) of the available certificate authorities, and provides the following
information about each certificate template that can be used for True
SSO: name, minimum key length, and hash algorithm.
Commands for Managing Connectors
You create one connector for each domain. The connector defines the parameters that are used for True
SSO.
For readability, the options shown in the following table do not represent the complete command you
would enter. Only the options specific to the particular task are included. For example, one row shows the
--list --connector options, but the vdmUtil command you would actually enter also contains options
for authentication and for specifying that you are configuring True SSO:
vdmUtil --authAs admin-role-user --authDomain netbios-name --authPassword admin-user-password --
truesso --list --connector
For more information about the authentication options, see Command-line Reference for Configuring True
SSO.
View Administration
VMware, Inc. 103