7.1

Table Of Contents
n
For Active Directory over LDAP, information required includes the Base DN, Bind DN, and Bind DN
password.
n
For Active Directory Integrated Windows Authentication, required information includes the domain's
Bind user UPN address and password.
n
If Active Directory is accessed over SSL, a copy of the SSL certicate is required.
n
For Active Directory (Integrated Windows Authentication), when you have multi-forest Active
Directory congured and the Domain Local group contains members from domains in dierent forests,
make sure that the Bind user is added to the Administrators group of the domain in which the Domain
Local group resides. If you fail to do this, these members will be missing from the Domain Local group.
n
Log in to the vRealize Automation console as a tenant administrator.
Procedure
1 Select Administration > Directories Management > Directories.
2 Click Add Directory.
3 On the Add Directory page, specify the IP address for the Active Directory server in the Directory
Name text box.
4 Select the appropriate Active Directory communication protocol using the radio buons under the
Directory Name text box.
Option Description
Windows Authentication
Select Active Directory (Integrated Windows Authentication)
LDAP
Select Active Directory over LDAP.
5 Congure the connector that synchronizes users from the Active Directory to the VMware
Directories Management directory in the Directory Sync and Authentication section.
Option Description
Sync Connector
Select the appropriate connector to use for your system. Each vRealize
Automation appliance contains a default connector. Consult your system
administrator if you need help in choosing the appropriate connector.
Authentication
Click the appropriate radio buon to indicate whether the selected
connector also performs authentication.
Directory Search Attribute
Select the appropriate account aribute that contains the user name.
Configuring vRealize Automation
80 VMware, Inc.