To provide high availability for the identity and access management services of the cross-region Workspace ONE cluster, you join the cluster nodes to the rainpole.local
domain and add them as directory connectors.
Procedure
- In a Web browser, log in to the Workspace ONE Access cross-region cluster by using the administration interface.
Setting Value URL https://wsa01svr01.rainpole.local/admin User name configadmin Password wsa01svr01_configadmin_password Domain System Domain - Join the wsa01svr01b.rainpole.local and wsa01svr01c.rainpole.local connectors to the
rainpole.local
domain.- On the main navigation bar, click Identity and access management.
- Click Setup and click the Connectors tab.
- On the Connectors page, next to the wsa01svr01b.rainpole.local connector, click Join domain.
- In the Join domain dialog box, configure these settings and click Join domain.
Setting
Value
Domain
Custom Domain
Custom Domain
rainpole.local
Domain User
svc-domain-join
Domain Password
svc-domain-join_password
Organizational unit (OU) of domain to join
CN=Computers,DC=rainpole,DC=local
- Repeat these steps to join the wsa01svr01c.rainpole.local connector to the
rainpole.local
domain.
- Add the wsa01svr01b.rainpole.local and wsa01svr01c.rainpole.local connectors as identity providers.
- On the main navigation bar, click Identity and access management.
- Click Manage and click the Identity providers tab.
- Click the WorkspaceIDP__1 identity provider.
- On the WorkspaceIDP__1 details page, from the Add a connector drop-down menu, select wsa01svr01b.rainpole.local, configure these settings, and click Add connector.
Setting
Value
Connector
wsa01svr01b.rainpole.local
Bind to AD
Checked
Bind user password
svc-wsa-ad_password
Domain admin user name
svc-domain-join
Domain admin password
svc-domain-join-password
- Repeat this step for the wsa01svr01c.rainpole.local connector.
- In the IdP Hostname text box, enter wsa01svr01.rainpole.local.
- Click Save.