5.5.2

Table Of Contents
4 Load the vCenter Server SSL certificate in Orchestrator from a URL address or file.
Option Action
Import from URL
Specify the URL of the vCenter Server:
https://your_vcenter_server_IP_address or
your_vcenter_server_IP_address:port
Import from file
Obtain the vCenter Server certificate file. The file is usually available at the
following locations:
n
C:\Documents and
Settings\AllUsers\ApplicationData\VMware\VMware
VirtualCenter\SSL\rui.crt
n
/etc/vmware/ssl/rui.crt
5 Click Import.
A message confirming that the import is successful appears.
6 Repeat the steps for each vCenter Server instance that you want to add to the Orchestrator server.
The imported certificate appears in the Imported SSL certificates list. On the Network tab, the red triangle
changes to a green circle to indicate that the component is now configured correctly.
What to do next
Each time you want to specify the use of an SSL connection to a vCenter Server instance, you must return to
SSL Trust Manager on the Network tab and import the corresponding vCenter Server SSL certificate.
Selecting the Authentication Type
Orchestrator requires an authentication method to work properly and manage user permissions.
Orchestrator supports two types of authentication.
LDAP authentication
Orchestrator connects to a working LDAP server.
vCenter Single Sign-On
authentication
Orchestrator authenticates through vCenter Single Sign-On.
Depending on the type of installation, Orchestrator is preconfigured to work with either an embedded
LDAP server or vCenter Single Sign-On.
n
When you install Orchestrator standalone, the Orchestrator server is preconfigured to work with an
embedded LDAP server.
n
When you install Orchestrator together with vCenter Server, the Orchestrator server is preconfigured to
work with the vCenter Single Sign-On server with which the installed vCenter Server instance is
registered.
n
When you download and deploy the Orchestrator Appliance, the Orchestrator server is preconfigured
to work with the OpenLDAP directory service embedded in the appliance.
IMPORTANT If you want to use Orchestrator through the vSphere Web Client for managing vSphere
inventory objects, you must configure Orchestrator to work with the same vCenter Single Sign-On instance
to which both vCenter Server and vSphere Web Client are pointing.
Installing and Configuring VMware vCenter Orchestrator
40 VMware, Inc.