7.2

Table Of Contents
Prerequisites
n
Connector installed and the activation code activated.
n
Select the required default attributes and add additional attributes on the User Attributes page. See
Select Attributes to Sync with Directory.
n
List of the Active Directory groups and users to sync from Active Directory.
n
For Active Directory over LDAP, information required includes the Base DN, Bind DN, and Bind DN
password.
n
For Active Directory Integrated Windows Authentication, required information includes the domain's
Bind user UPN address and password.
n
If Active Directory is accessed over SSL, a copy of the SSL certificate is required.
n
For Active Directory (Integrated Windows Authentication), when you have multi-forest Active Directory
configured and the Domain Local group contains members from domains in different forests, make
sure that the Bind user is added to the Administrators group of the domain in which the Domain Local
group resides. If you fail to do this, these members will be missing from the Domain Local group.
n
Log in to the vRealize Automation console as a tenant administrator.
Procedure
1 Select Administration > Directories Management > Directories.
2 Click Add Directory and select Add Active Directory over LDAP/IWA.
3 On the Add Directory page, specify the IP address for the Active Directory server in the Directory
Name text box.
4 Select the appropriate Active Directory communication protocol using the radio buttons under the
Directory Name text box.
Option Description
Windows Authentication Select Active Directory (Integrated Windows Authentication)
LDAP Select Active Directory over LDAP.
Configuring vRealize Automation
VMware, Inc. 92