1.5
Table Of Contents
- vCloud Director Administrator's Guide
- Contents
- vCloud Director Administrator's Guide
- Getting Started with vCloud Director
- Adding Resources to vCloud Director
- Adding vSphere Resources
- Adding Cloud Resources
- Provider Virtual Datacenters
- Create a Provider Virtual Datacenter
- External Networks
- Add an External Network
- Network Pools
- Add a Network Pool That Is Backed by VLAN IDs
- Add a Network Pool That Is Backed by Cloud Isolated Networks
- Add a Network Pool That Is Backed by vSphere Port Groups
- Set the MTU for a Network Pool Backed by Cloud Isolated Networks
- Creating and Provisioning Organizations
- Creating a Published Catalog
- Managing Cloud Resources
- Managing Provider vDCs
- Enable or Disable a Provider vDC
- Delete a Provider vDC
- Modify a Provider vDC Name and Description
- Enable or Disable a Provider vDC Host
- Prepare or Unprepare a Provider vDC Host
- Upgrade an ESX/ESXi Host Agent for a Provider vDC Host
- Repair a Provider vDC ESX/ESXi Host
- Enable or Disable a Provider vDC Datastore
- Add Storage Capacity to a Provider vDC
- Add a Resource Pool to a Provider vDC
- Configure Low Disk Space Warnings for a Provider vDC Datastore
- Send an Email Notification to Provider vDC Users
- Managing Organization vDCs
- Managing External Networks
- Managing Organization Networks
- Creating Organization Networks
- Configuring Network Services
- Configure DHCP for an Organization Network
- Enable the Firewall for an Organization Network
- Add a Firewall Rule for an Organization Network
- Reorder Firewall Rules for an Organization Network
- Enable IP Masquerading for an Organization Network
- Add External IP Addresses to an Organization Network
- Configure Port Forwarding for an Organization Network
- Configure IP Translation for an Organization Network
- Reorder NAT Mapping Rules for an Organization Network
- Enable Site-to-Site VPN for an Organization Network
- Create a VPN Tunnel Within an Organization
- Create a VPN Tunnel Between Organizations
- Create a VPN Tunnel to a Remote Network
- Enable Static Routing for an Organization Network
- Add Static Routes Between vApp Networks Routed to the Same Organization Network
- Add Static Routes Between vApp Networks Routed to Different Organization Networks
- Reset an Organization Network
- View vApps and vApp Templates That Use an Organization Network
- Delete an Organization Network
- View IP Use for an Organization Network
- Add IP Addresses to an Organization Network IP Pool
- Modify an Organization Network Name and Description
- Modify an Organization Network DNS Settings
- View Syslog Server Settings for an Organization Network
- Apply Syslog Server Settings to an Organization Network
- Managing Network Pools
- Managing Cloud Cells
- Managing Provider vDCs
- Managing vSphere Resources
- Managing Organizations
- Enable or Disable an Organization
- Delete an Organization
- Modify an Organization Name
- Modify an Organization Full Name and Description
- Modify Organization LDAP Options
- Modify Organization Catalog Publishing Policy
- Modify Organization Email Preferences
- Modify Organization Lease, Quota, and Limit Settings
- Add a Catalog to an Organization
- Managing Organization Resources
- Managing Organization Users and Groups
- Managing Organization vApps and Virtual Machines
- Managing System Administrators and Roles
- Add a System Administrator
- Import a System Administrator
- Enable or Disable a System Administrator
- Delete a System Administrator
- Edit System Administrator Profile and Contact Information
- Send an Email Notification to Users
- Delete a System Administrator Who Lost Access to the System
- Import an LDAP Group
- Delete an LDAP Group
- Change an LDAP Group Description
- Roles and Rights
- Create a Role
- Copy a Role
- Edit a Role
- Delete a Role
- Managing System Settings
- Modify General System Settings
- General System Settings
- Configure SMTP Settings
- Configure System Notification Settings
- Configuring Blocking Tasks and Notifications
- Configuring the System LDAP Settings
- Customize the vCloud Director Client UI
- Configure the Public Web URL
- Configure the Public Console Proxy Address
- Configure the Public REST API Base URL
- Configure the Account Lockout Policy
- Monitoring vCloud Director
- Roles and Rights
- Index
5 Select the default timeout action.
6
Click Apply.
Enable Blocking Tasks
You can configure certain tasks to be enabled for blocking tasks.
Procedure
1 Click the Administration tab and click Blocking Tasks in the left pane.
2 Click the Blocking Tasks tab.
3 Select the tasks to enable for blocking extensions
4 Click Apply.
Configuring the System LDAP Settings
You can configure vCloud Director to create user accounts and authenticate user credentials against an LDAP
server. Instead of manually creating user accounts, you can import LDAP users and groups by pointing the
installation to an LDAP server.
After you connect vCloud Director to an LDAP server, you can import system administrators from the groups
and users in the LDAP directory. You can also use the system LDAP settings to import users and groups to an
organization, or you can specify separate LDAP settings for each organization. An LDAP user cannot log in
to vCloud Director until you import them to the system or an organization.
When an imported LDAP user logs in to vCloud Director, vCloud Director checks the credentials of the user
against the LDAP directory. If the credentials are accepted, vCloud Director creates a user account and logs
the user in to the system.
vCloud Director does not support hierarchical domains for LDAP authentication.
vCloud Director cannot modify the information in your LDAP directory. You can add, delete, or modify LDAP
users or groups only in the LDAP directory itself.
You can control how often vCloud Director synchronizes user and group information with the LDAP directory.
LDAP Support
vCloud Director supports various combinations of operating system, LDAP server, and authentication method.
Table 9-2 displays a list of what vCloud Director supports.
Table 9-2. Supported Combinations of Operating System, LDAP Server, and Authentication Method
Operating System LDAP Server Authentication Method
Windows 2003 Active Directory Simple
Windows 2003 Active Directory Simple SSL
Windows 2003 Active Directory Kerberos
Windows 2003 Active Directory Kerberos SSL
Windows 2008 Active Directory Simple
Windows 7 (2008 R2) Active Directory Simple
Windows 7 (2008 R2) Active Directory Simple SSL
Windows 7 (2008 R2) Active Directory Kerberos
Windows 7 (2008 R2) Active Directory Kerberos SSL
Chapter 9 Managing System Settings
VMware, Inc. 93