2.0

Table Of Contents
On successfully configuring the LDAP server setting, the details of the LDAP server, except the authentication
information, are displayed in the table on the LDAP Servers page.
What to do next
You can now add the Windows Active Directory users and groups to vCenter Chargeback Manager so that
they can access the application using their Windows Active Directory login credentials. To know more about
adding LDAP users and groups to the application, see “Creating Users,” on page 45.
Edit the LDAP Server Setting
After you have configured an LDAP server in the application, you can modify its details any time, provided
you have the required privileges. For instance, if the LDAP user account password is changed on the LDAP
server, you must also reflect this change in vCenter Chargeback Manager.
If the SSL certificate on the LDAP server is changed, you must modify the LDAP server setting in vCenter
Chargeback Manager to obtain the modified SSL certificate. Else, communication with the LDAP server fails.
To perform this task, you must have the Super User role or the Administrator role. If you have the
Administrator role, you can only edit those LDAP server settings that you have configured.
CAUTION Changes to the LDAP server settings might impact the corresponding LDAP users and groups that
are already added to the application. If you change the BaseDN to the DN of an entity that is lower in the LDAP
hierarchy compared to the currently set DN, then LDAP users that exist above the new DN will not be able to
log in to vCenter Chargeback Manager, and the resources created by them in the application, such as
hierarchies, cost model, and reports, might get orphaned and become unusable.
Procedure
1 In the Settings tab, click LDAP Servers.
2 Select the required LDAP server from the table displayed on the page.
3 Click Edit.
The Manage LDAP Server screen is displayed.
4 Modify the required LDAP server setting.
Option Description
Server Name
A user-defined name to uniquely identify the LDAP server. You can provide
a full name or a short code to identify the LDAP server.
Server Address
Static IP address of the LDAP server. If the sever does not have a static IP
address, ensure that you provide the fully-qualified domain name (FQDN).
User Name
The LDAP account to authenticate in to the LDAP server. The user name can
be of the formats user_name@domain_name or domain_name\user_name.
Preferably, use the User Principal Name (UPN).
Password
Password for the user name provided.
BaseDN
The distinguished name (DN) of the entity in the LDAP hierarchy from which
groups and users can be added to the application. If not sepcified, vCenter
Chargeback Manager automatically fetches the root base dn and uses this
value.
Port
Port on which the LDAP service is listening. The default port is 389. If you
select the Enable LDAPS option, ensure that you change this to a secure port,
say 636.
LDAP Limit
The maximum number of Windows Active Directory users or groups to be
fetched and displayed in the Add User Account screen of the application.
Enable LDAPS
Select this option to enable LDAP over SSL.
vCenter Chargeback Manager User’s Guide
16 VMware, Inc.