6.2

Table Of Contents
Configure the Identity Appliance
The Identity Appliance provides Single-Sign On (SSO) capability for vRealize Automation users. SSO is
an authentication broker and security token exchange that interacts with the enterprise identity store
(Active Directory or OpenLDAP) to authenticate users. A system administrator configures SSO settings to
provide access to the vRealize Appliance.
Migration Note If you plan to use the vRealize Automation migration tool, you must specify a Native
Active Directory when you configure the appliance.
Native Active Directories have the following characteristics:
n
Use Kerberos to authenticate
n
Do not require a search base, making it easier to find the correct Active Directory store
n
Can be used only with the default tenant
You must also specify an identity store when you configure tenants, even if you specify Native Active
Directory settings here.
Prerequisites
Enable Time Synchronization on the Identity Appliance.
Procedure
1 Navigate to the Identity Appliance management console by using its fully qualified domain name,
https://identity-hostname.domain.name:5480/.
2 Continue past the certificate warning.
3 Log in with the user name root and the password you specified when the appliance was deployed.
You can use a service account or user account.
4 Click the SSO tab.
The red text is a prompt, not an error message.
5 Specify a password for the system administrator by entering the same value in the Admin Password
and Repeat password text boxes.
The System Domain text field has the value vsphere.local, which is the local default domain for the
Identity Appliance. The default tenant is created with this name and the system administrator is
administrator@vsphere.local. Record the user name and password in a secure place for later use.
6 Click Apply.
It can take several minutes for the success message to appear. Do not interrupt the process.
7 When the success message appears, click the Host Settings tab.
8 Verify that the SSO Hostname does not include a port suffix, such as :7444.
Installation and Configuration
VMware, Inc. 66