4.0
Table Of Contents
- vCenter Orchestrator Installation and Configuration Guide
- Contents
- Updated Information
- About This Book
- Introduction to VMware vCenter Orchestrator
- Orchestrator System Requirements
- Orchestrator Components Setup Guidelines
- Installing Orchestrator
- Upgrade Orchestrator with vCenter Server
- Upgrade Orchestrator Standalone
- Upgrading Orchestrator Applications After Upgrading vCenter Server
- Uninstall Orchestrator
- Configuring Orchestrator
- Start the Orchestrator Configuration Service
- Log In to the Orchestrator Configuration Interface
- Change the Default Password
- Revert to the Default Password for Orchestrator Configuration
- Configure the Network Connection
- Change the Default Configuration Ports on the Orchestrator Client Side
- Import the vCenter SSL Certificate
- Configuring LDAP Settings
- Password Encryption and Hashing Mechanism
- Configure the Database Connection
- Server Certificate
- Configure the Default Plug-Ins
- Access Rights to Orchestrator Server
- Import the vCenter Server License
- Start the Orchestrator Server
- Export the Orchestrator Configuration
- Import the Orchestrator Configuration
- Configure the Maximum Number of Events and Runs
- Install an Application
- Start a Published Web View
- Change the Web View SSL Certificate
- Define the Server Log Level
- Where to Go From Here
- Index
Prerequisites
n
Verify that SSL access is enabled on the LDAP server.
n
Obtain a self-signed server certificate or a certificate that is signed by a Certificate Authority.
Procedure
1 Log in to the Orchestrator configuration interface as vmware.
2 Click Network.
3 In the right pane, click the SSL Certificate tab.
4 Browse to select a certificate file to import.
5 Click Import.
A message confirming that the import is successful appears.
6 Click Startup Options.
7 Click Restart the vCO configuration server to restart the Orchestrator Configuration service after adding
a new SSL certificate.
The imported certificate appears in the Imported SSL certificates list. You activated secure connection between
Orchestrator and your LDAP server.
What to do next
You must enable SSL on the LDAP tab in the Orchestrator configuration interface.
Specify the Browsing Credentials
Orchestrator must read your LDAP structure to inherit its properties. You can specify the credentials that
Orchestrator uses to connect to an LDAP server.
Prerequisites
You must have a working LDAP service on your infrastructure and have generated the LDAP connection URL.
Procedure
1 In the LDAP tab of the Orchestrator configuration interface, enter a valid user name (LDAP string) in the
User name text box for a user on your LDAP who has browsing permissions.
The possible formats in which you can specify the user name in Active Directory are as follows:
n
Bare user name format, for example user.
n
Distinguished name format: cn=user,ou=employees,dc=company,dc=org.
Use this format with OpenLDAP, Sun, and eDirectory. No spaces between the comma and the next
identifier.
n
Principle name format: user@company.org.
n
NetBEUI format: COMPANY\user.
2 In the Password text box, enter the valid password for the user name you entered in Step 1.
Orchestrator uses these credentials to connect to the LDAP server.
What to do next
Define the LDAP containers for Orchestrator to look up users and groups.
vCenter Orchestrator Installation and Configuration Guide
42 VMware, Inc.