Connect to Active Directory
In this section, we are going to integrate Active Directory to vIDM. Once the integration is completed, we will login to the End User Catalog using a directory account.
Add Active Directory over LDAP/IWA
In the vIDM console,
- Click on Identity & Access Management
- Click on Add Directory
- Select Add Active Directory Over LDAP/IWA
Directory Connection Details
- Enter the Directory a friendly name
Corp
- Select your installed connector from the Sync Connector drop down connector-01.corp.local
Directory Connection Details
- Scroll down until you the option Bind User Details
- Enter Base DN as
dc=corp, dc=local
- Enter Bind DN as
cn=ima service, cn=users, dc=corp, dc=local
- Enter Bind DN Password as
VMware1!
- Click Test Connection
- Validate that you see the message Connection is successful
- Click Save & Next
Select the Domains
- You should see the corp.local (CORP) domain selected by default
- Click Next
Map User Attributes
For this lab we won't be modifying the default mapped attributes as they match with the lab Active Directory configuration
Click Next
Select the Groups You Want To Sync
Here we can choose which security groups from Active Directory to sync into vIDM
- Click on the + to add a new line entry
- Enter
DC=corp, DC=local
in the Group DN - Click Find Groups
Select the Groups You Want To Sync
Click on Select in front of the group number search result 0 of 48
Search AD Groups
For this lab we will add two AD groups
- Enter
Domain
in the search field. - Scroll down if necessary.
- Select Domain Admins from the search results
- Select Domain Users from the search results
- Click Save
Confirm Group Selection
- Scroll down until you the section for Group DN.
- You should now see the two groups you selected listed in this screen - Domain Admins, Domain Users
- Click Next
Select the Users You Would Like to Sync
In this screen you can specify different Organization Units (OUs) from which to sync users from. For this lab we will be simply adding users from the entire domain structure:
- Click + to add a new line entry
- Enter
CN=Users,DC=corp,DC=local
to sync all the users in the Users OG. - Click Next
Review Results and Sync
Review the sync preview results. Note that vIDM will only sync accounts which have all the default required attributes.
Click Sync Directory
Confirm Directory Sync
You may need to refresh the page to see the results.
Once the directory sync is completed, you should see a green check mark and one synced user.
Open an Incongito Window in Chrome
- On the top right corner, select the option to launch Chrome Settings.
- Click on New incognito window
Login as End User
- In the incognito window, navigate to your vIDM console
https://corp.airwlab.com
- Select corp.local from the domain drop down
- Click Next
Login as End User
The default setup redirects the end user to the connector URL https://connector-01.airwlab.com for authentication. We will be leveraging this connector to authenticate with the AD
- Enter domain account
imauser
- Enter account password:
VMware1!
- Click Sign In
End User Catalog
- You should now be logged into the Workspace One catalog view as the domain account.
- Click X to close the incognite window.
0 Comments
Add your comment