Redirect 301 /ads.txt https://srv.adstxtmanager.com/19390/vmorecloud.com VCF 9 – Enable and Configure SSO Part 1 (Active Directory) Mastodon
VirtualizationVCF 9

VCF 9 – Enable and Configure SSO Part 1 (Active Directory)

VCF 9 – Enable and Configure SSO Part 1 (Active Directory)
13views


Today we’re going to be going through the steps of configuring SSO across the VCF components and integrating with Active Directory.

First, log into VCF Operations and browse to Fleet Management / Identity and Access, then select your VCF Instance.

VCF 9 – Enable and Configure SSO Part 1 (Active Directory)

Step 1: Choose Deployment Mode – Click “Start” and we’ll select Identity Broker Appliance. If you haven’t already deployed this, you’ll be prompted to.

VCF 9 – Enable and Configure SSO Part 1 (Active Directory)
VCF 9 – Enable and Configure SSO Part 1 (Active Directory)

Step 2: Configure Identity Provider, click “Start”

We’ll be using AD, but VCF 9 now supports modern identity providers such as Ping/Okta/Entra.

VCF 9 – Enable and Configure SSO Part 1 (Active Directory)

Configure with your AD Details. My domain is called “ad.home” and I’m binding with the built-in AD Administrator account.

VCF 9 – Enable and Configure SSO Part 1 (Active Directory)

Review and click “Finish”

VCF 9 – Enable and Configure SSO Part 1 (Active Directory)

Step 3: Configure User and Group Provisioning – Click “Configure”

VCF 9 – Enable and Configure SSO Part 1 (Active Directory)
VCF 9 – Enable and Configure SSO Part 1 (Active Directory)

Review the attribute mappings

VCF 9 – Enable and Configure SSO Part 1 (Active Directory)

I’m going to select my VCF_ADMIN group thats in the “VCF Users” OU

VCF 9 – Enable and Configure SSO Part 1 (Active Directory)

I’m not going to provision any users, as it’s best practice to control access via groups instead.

VCF 9 – Enable and Configure SSO Part 1 (Active Directory)

Review and Finish

VCF 9 – Enable and Configure SSO Part 1 (Active Directory)
VCF 9 – Enable and Configure SSO Part 1 (Active Directory)

Once complete, click Done.

We’ll pick up in Part 2 for the NSX & vCenter role mappings.

Leave a Response