After you install and configure the first connector instance, you can add additional connectors for high availability. Install new connector virtual appliances and configure them in exactly the same way as the first connector instance.
Procedure
- Install and configure a new connector instance by following these instructions.
- Associate the new connector with the WorkspaceIDP of the first connector instance.
- In the administration console, select the Identity & Access Management tab, then select the Identity Providers tab.
- In the Identity Providers page, find the WorkspaceIDP of the first connector instance and click the link.
- In the Connector(s) field, select the new connector.
- Enter the Bind DN password and click Add Connector.
- Click Save.
- If you had joined an Active Directory domain in the first connector instance, then you must join the domain in the new connector instance too.
- In the Identity & Access Management tab, click Setup.
The new connector instance is listed in the Connectors page.
- Click Join Domain next to the new connector and specify the domain information.
Note: For directories of type Integrated Windows Authentication (IWA), you must perform the following actions.
- Join the new connector instance to the domain to which the IWA directory in the original connector instance was joined.
- Select the Identity & Access Management tab, then click Setup.
The new connector instance is listed in the Connectors page.
- Click Join Domain and specify the domain information.
- Save the IWA directory configuration.
- Select the Identity & Access Management tab.
- In the Directories page, click the IWA directory link.
- Click Save to save the directory configuration.
- Configure and enable authentication adapters on the new connector.
Important: Authentication adapters on all the connectors in your cluster must be configured identically. The same authentication methods must be enabled on all the connectors.
- In the Identity & Access Management tab, click Setup, then click the Connectors tab.
- Click the link in the Worker column of the new connector.
- Click the Auth Adapters tab.
All available authentication adapters for the connector are listed.
The PasswordIdpAdapter is already configured and enabled because you associated the new connector with the directory associated with the first connector.
- Configure and enable the other authentication adapters in the same way as the first connector. Ensure that the configuration information is identical.
For information on configuring authentication adapters, see the
VMware Identity Manager Administration Guide.