7.1

Table Of Contents
This chapter includes the following topics:
n
“Choosing Directories Management Conguration Options,” on page 76
n
“Scenario: Congure an Active Directory Link for a Highly Available vRealize Automation,” on
page 118
n
“Congure Smart Card Authentication for vRealize Automation,” on page 120
n
“Create a Multi Domain or Multi Forest Active Directory Link,” on page 126
n
“Conguring Groups and User Roles,” on page 127
n
“Scenario: Congure the Default Tenant for Rainpole,” on page 131
n
“Create Additional Tenants,” on page 136
n
“Delete a Tenant,” on page 138
n
“Conguring Custom Branding,” on page 139
n
“Checklist for Conguring Notications,” on page 141
n
“Create a Custom RDP File to Support RDP Connections for Provisioned Machines,” on page 150
n
“Scenario: Add Datacenter Locations for Cross Region Deployments,” on page 151
n
“Conguring vRealize Orchestrator and Plug-Ins,” on page 152
Choosing Directories Management Configuration Options
You can use vRealize Automation Directories Management features to congure an Active Directory link in
accordance with your user authentication requirements.
Directories Management provides many options to support a highly customized user authentication.
Table 22. Choosing Directories Management Configuration Options
Configuration Option Procedure
Congure a link to your Active Directory. 1 Congure a link to your Active Directory. See
“Congure a Link to Active Directory,” on page 79.
2 If you congured vRealize Automation for high
availability, see “Congure Directories Management
for High Availability,” on page 83.
(Optional) Enhance security of a user ID and password
based directory link by conguring bi-directional
integration with Active Directory Federated Services.
“Congure a Bi Directional Trust Relationship Between
vRealize Automation and Active Directory,” on page 84
(Optional) Add users and groups to an existing Active
Directory Link .
Add Users or Groups to an Active Directory Connection,”
on page 88.
(Optional) Edit the default policy to apply custom rules for
an Active Directory link.
“Manage the User Access Policy,” on page 100.
(Optional) Congure network ranges to restrict the IP
addresses through which users can log in to the system,
manage login restrictions (timeout, number of login
aempts before lock-out).
Add or Edit a Network Range,” on page 111.
Directories Management Overview
Tenant administrators can congure tenant identity management and access control seings using the
Directories Management options on the vRealize Automation application console.
You can manage the following seings from the Administration > Directories Management tab.
Configuring vRealize Automation
76 VMware, Inc.