vRealize Automation uses VMware Identity Manager to authenticate users.
Each tenant must be associated with at least one directory as part of the tenant creation. You can add more directories if necessary. Perform the procedure by using the vra-localrainpoleadmin that you configured.
Procedure
- Log in to the vRealize Automation Rainpole portal.
- Open a Web browser and go to https://vra01svr01.rainpole.local/vcac/org/rainpole.
- Log in using the following credentials.
Setting
Value
User name
vra-localrainpoleadmin
Password
vra-localrainpoleadmin_password
Domain
vsphere.local
- Navigate to Administration > Directories Management > Directories.
- Click Add Directory and select Add Active Directory over LDAP/IWA, specify the following settings, and click Save & Next.
Setting
Value
Directory Name
rainpole.local
Directory Type
Active Directory (Integrated Windows Authentication)
Sync Connector
vra01svr01a.rainpole.local
Authentication
Yes
Directory Search Attribute
sAMAccountName
Certificates
Deselected
Domain Name
rainpole.local
Domain Admin Username
svc-domain-join
Domain Admin Password
svc-domain-join_password
Bind User UPN
svc-vra@rainpole.local
Bind DN Password
svc-vra_password
- On the Select the Domains page, select rainpole.local (RAINPOLE), and click Next.
- On the Map User Attributes page, click Next.
- On the Select the groups (users) you want to sync page, enter the group DNs to sync.
- Click the Add icon to add the distinguished name to the search criteria.
- In the Specify the group DNs text box, enter dc=rainpole,dc=local and click Find Groups.
- After the Groups to sync value updates, click the Select button.
- Select the following groups and click Save.
ug-vra-admins-rainpole
ug-vra-archs-rainpole
ug-SDDC-Admins
ug-SDDC-Ops
ug-vROAdmins
- Click Next.
- On the Select the Users you would like to sync page, enter the user DNs to sync.
- Click the Add icon to add the distinguished name to the search criteria.
- In the Specify the user DNs text box, enter cn=users,dc=rainpole,dc=local, click the Add icon on the same row, and click Next.
- On the Review page, click Sync Directory.