Connection of vSphere web customer smart card

Smart card logon can be enabled on the web client of Vsphere?  I use 5.5

I've looked everywhere and cannot find any info.

Thank you

The only option for smart card that my knowledge is that which is supposed to come with vSphere 6.0. It is however for US Federal customers only. (see http://www.vmware.com/files/pdf/vsphere/VMware-vSphere-Platform-Whats-New.pdf)

in the document:

DCUI smart card authentication

This feature is for US Federal customers only. It allows access of DCUI connection using a common access card (CAC) and verification of personal identity (VIP). An ESXi host must belong to an Active Directory domain.

André

Tags: VMware

Similar Questions

  • Unable to connect to vSphere Web Client after you restart the web service from client vSphere in vCenter

    I tried my code change and restarted the service WebClient vSphere. The first time it worked but the second time I restarted the service, he stoped working: when I try to set up the web client from a browser, a pop error message appeared: "Could not connect to vSphere client to web. Contact your administrator to resolve this problem. Then the page is reloaded, but showing the same error over and over again. We run vCenter 6 with web client sdk6.

    logon.JPG

    In the journal of the Virgin, I found this:

    [2015 04-21 T 09: 36:00.361Z] [ERROR] http-bio-9443-exec-4 o.a.c.c.C. [.] [localhost]. [/ vsphere client]. [springServlet]         Servlet.Service () for servlet [springServlet] in the context of path [/ vsphere client] threw exception [processing request failed, the nested exception is java.lang.NullPointerException] with root cause java.lang.NullPointerException: null

    at flex.messaging.io.SerializationContext.clearThreadLocalObjects(SerializationContext.java:249)

    at org.springframework.flex.servlet.MessageBrokerHandlerAdapter.handle(MessageBrokerHandlerAdapter.java:121)

    at org.springframework.web.servlet.DispatcherServlet.doDispatch(DispatcherServlet.java:923)

    at org.springframework.web.servlet.DispatcherServlet.doService(DispatcherServlet.java:852)

    at org.springframework.web.servlet.FrameworkServlet.processRequest(FrameworkServlet.java:882)

    at org.springframework.web.servlet.FrameworkServlet.doPost(FrameworkServlet.java:789)

    at javax.servlet.http.HttpServlet.service(HttpServlet.java:755)

    at javax.servlet.http.HttpServlet.service(HttpServlet.java:848)

    at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:303)

    at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:208)

    at org.apache.tomcat.websocket.server.WsFilter.doFilter(WsFilter.java:52)

    at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:241)

    at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:208)

    to org.springframework.security.web.FilterChainProxy$ VirtualFilterChain.doFilter (FilterChainProxy.java:330)

    at org.springframework.security.web.access.intercept.FilterSecurityInterceptor.invoke(FilterSecurityInterceptor.java:118)

    at org.springframework.security.web.access.intercept.FilterSecurityInterceptor.doFilter(FilterSecurityInterceptor.java:84)

    to org.springframework.security.web.FilterChainProxy$ VirtualFilterChain.doFilter (FilterChainProxy.java:342)

    at org.springframework.security.web.access.ExceptionTranslationFilter.doFilter(ExceptionTranslationFilter.java:113)

    to org.springframework.security.web.FilterChainProxy$ VirtualFilterChain.doFilter (FilterChainProxy.java:342)

    at org.springframework.security.web.session.SessionManagementFilter.doFilter(SessionManagementFilter.java:103)

    to org.springframework.security.web.FilterChainProxy$ VirtualFilterChain.doFilter (FilterChainProxy.java:342)

    at org.springframework.security.web.authentication.AnonymousAuthenticationFilter.doFilter(AnonymousAuthenticationFilter.java:113)

    to org.springframework.security.web.FilterChainProxy$ VirtualFilterChain.doFilter (FilterChainProxy.java:342)

    at org.springframework.security.web.authentication.rememberme.RememberMeAuthenticationFilter.doFilter(RememberMeAuthenticationFilter.java:146)

    to org.springframework.security.web.FilterChainProxy$ VirtualFilterChain.doFilter (FilterChainProxy.java:342)

    at org.springframework.security.web.servletapi.SecurityContextHolderAwareRequestFilter.doFilter(SecurityContextHolderAwareRequestFilter.java:54)

    to org.springframework.security.web.FilterChainProxy$ VirtualFilterChain.doFilter (FilterChainProxy.java:342)

    at org.springframework.security.web.savedrequest.RequestCacheAwareFilter.doFilter(RequestCacheAwareFilter.java:45)

    to org.springframework.security.web.FilterChainProxy$ VirtualFilterChain.doFilter (FilterChainProxy.java:342)

    at org.springframework.security.web.authentication.AbstractAuthenticationProcessingFilter.doFilter(AbstractAuthenticationProcessingFilter.java:183)

    to org.springframework.security.web.FilterChainProxy$ VirtualFilterChain.doFilter (FilterChainProxy.java:342)

    at org.springframework.security.web.authentication.logout.LogoutFilter.doFilter(LogoutFilter.java:105)

    to org.springframework.security.web.FilterChainProxy$ VirtualFilterChain.doFilter (FilterChainProxy.java:342)

    at org.springframework.security.web.context.SecurityContextPersistenceFilter.doFilter(SecurityContextPersistenceFilter.java:87)

    to org.springframework.security.web.FilterChainProxy$ VirtualFilterChain.doFilter (FilterChainProxy.java:342)

    at com.vmware.vise.security.websso.SecurityRequestWrapperFilter.doFilterInternal(SecurityRequestWrapperFilter.java:47)

    at org.springframework.web.filter.OncePerRequestFilter.doFilter(OncePerRequestFilter.java:76)

    to org.springframework.security.web.FilterChainProxy$ VirtualFilterChain.doFilter (FilterChainProxy.java:342)

    at org.springframework.security.web.FilterChainProxy.doFilterInternal(FilterChainProxy.java:192)

    at org.springframework.security.web.FilterChainProxy.doFilter(FilterChainProxy.java:160)

    at org.springframework.web.filter.DelegatingFilterProxy.invokeDelegate(DelegatingFilterProxy.java:346)

    at org.springframework.web.filter.DelegatingFilterProxy.doFilter(DelegatingFilterProxy.java:259)

    at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:241)

    at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:208)

    at com.vmware.vise.security.SessionManagementFilter.doFilterInternal(SessionManagementFilter.java:82)

    at org.springframework.web.filter.OncePerRequestFilter.doFilter(OncePerRequestFilter.java:76)

    at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:241)

    at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:208)

    at com.vmware.vsphere.client.logging.MDCLogFilter.doFilterInternal(MDCLogFilter.java:41)

    at org.springframework.web.filter.OncePerRequestFilter.doFilter(OncePerRequestFilter.java:76)

    at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:241)

    at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:208)

    at com.vmware.vise.extensionfw.DeploymentFilter.doFilter(DeploymentFilter.java:35)

    at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:241)

    at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:208)

    at com.vmware.vise.util.jsp.JspFilter.doFilterInternal(JspFilter.java:54)

    at org.springframework.web.filter.OncePerRequestFilter.doFilter(OncePerRequestFilter.java:76)

    at org.apache.catalina.core.ApplicationFilterChain.internalDoFilter(ApplicationFilterChain.java:241)

    at org.apache.catalina.core.ApplicationFilterChain.doFilter(ApplicationFilterChain.java:208)

    at org.apache.catalina.core.StandardWrapperValve.invoke(StandardWrapperValve.java:220)

    at org.apache.catalina.core.StandardContextValve.invoke(StandardContextValve.java:122)

    at org.apache.catalina.authenticator.AuthenticatorBase.invoke(AuthenticatorBase.java:501)

    at org.apache.catalina.core.StandardHostValve.invoke(StandardHostValve.java:170)

    at org.apache.catalina.valves.ErrorReportValve.invoke(ErrorReportValve.java:98)

    at org.eclipse.virgo.web.tomcat.support.ApplicationNameTrackingValve.invoke(ApplicationNameTrackingValve.java:33)

    at org.apache.catalina.valves.AccessLogValve.invoke(AccessLogValve.java:950)

    at org.apache.catalina.core.StandardEngineValve.invoke(StandardEngineValve.java:116)

    at org.apache.catalina.connector.CoyoteAdapter.service(CoyoteAdapter.java:408)

    at org.apache.coyote.http11.AbstractHttp11Processor.process(AbstractHttp11Processor.java:1040)

    to org.apache.coyote.AbstractProtocol$ AbstractConnectionHandler.process (AbstractProtocol.java:607)

    to org.apache.tomcat.util.net.JIoEndpoint$ SocketProcessor.run (JIoEndpoint.java:313)

    at java.util.concurrent.ThreadPoolExecutor.runWorker(ThreadPoolExecutor.java:1145)

    to java.util.concurrent.ThreadPoolExecutor$ Worker.run (ThreadPoolExecutor.java:615)

    at java.lang.Thread.run(Thread.java:745)

    Your first mistake is:

    > [2015 04-21 T 20: 46:29.308Z] [ERROR] start-signs-2 org.springframework.flex.core.MessageBrokerFactoryBean error thrown during initialization flex.messaging.MessageException MessageBroker: cannot create class of type 'com.vmware.vise.messaging.endpoints.SecureAMFEndpoint '.

    It must be because your UI package is CLEAR. MF does not import the com.vmware.vise.messaging.endpoints package

    If that isn't it, check what is different between your plugin and a similar SDK sample

  • Unable to connect to vSphere Web Client using Firefox or Chrome on the server 2012R2

    I recently installed the web client of vsphere 5.1.0 on my 2K12R2 box.  I get questions that are well known and documented when I try to connect using IE11 (but note that I can always connect to the server vCenter). So I decided to try firefox and chrome.

    With Firefox, I just get a cannot connect error message - Firefox can't establish a connection with the serere to localhost:9443.  When I try Chrome I get "this webpage is not available" with IE it came with the problem with the security certificate, but if I continue I can enter.  Other browsers are set to use the system proxy settings, so I don't ' know what is happening.

    Help!

    Thank you

    Have you tried to set the proxy to 'No Proxy' settings?

    What the system proxy settings are currently configured (netsh winhttp, see the proxy)?

    André

  • Manager update is not displayed in the section of vSphere web customer service

    I know component Server Update Manager is installed on VC, but I'm not able to see the Update Manager icon in the 'home' of web client vSphere section.

    I want to set up the frequency of the update of the repository browser and no vSphere client.

    I can see the icon for the Update Manager as well in "hosts and clusters" and "models and virtual computers.

    Update Manager still do not offer web client I believe. You must use vSphere client to use Update Manager

  • SSO / vSphere Web customer problem

    Hi all

    I have a 5.1 vCenter which has been installed and configured before my time to join the company. The Single Sign-On has been installed and the service is running. The Web client has not been installed as part of the initial installation. If I try to install the Web client he asks SSO credentials. Unfortunately the name and the password is unknown. I found the article that talks about reset the password, but it does not help my situation since I do not know the user name as well.

    What is my best bet here? Re-install SSO and give the new credentials and then install the web client. Anything about uninstalling SSO and re - install?

    Thanks in advance

    By default the UNIQUE username authentication is admin@system-domain.

    According to me, the recommended approach to resettlement is to construct a new instance of the SSO and move all that from this article.  I recommend you try first in a test lab.

  • VWC plugin using sdk 5.1 is broken if running on the web client 6.0 with port 9443 - out could not connect to the Web Client vSphere. Contact your administrator to resolve this problem.

    We did a vwc with sdk 5.1 plugin, now, we want to make it work on the web client 6.0. before the race, we have changed the MANIFESTO. MF and services-config. XML responses such as the following:

    2 important reminders for your plugin 5.5 is compatible with the Web Client 6.0

    After that, we deployed our plugin on web client 6.0

    If access us using the URL with port: https:// < ipaddress >: client/vsphere-9443 /? csp, our plugin arises, our plugin function is also ok.

    If access us using the URL without port: https://< ipaddress > / vsphere client /? csp, our plugin is present, the function is broken (error occurred when flex user interface by calling the java service: "Could not connect to vSphere Web Client.) Contact your administrator to resolve this problem. »).

    Thank you very much

    Please change the CHANNEL_URL in your proxy classes to use 'amf' instead of 'amfsecure '.

    private static const CHANNEL_URI:String = "/" + YOUR_MODULE.contextPath + "/messagebroker/amf"
    

    This should solve your problem.

  • Cannot use Chrome to connect to the web client vcenter after update.

    vCenter Web Client Version 5.1.0 build 1115182

    Customer integration Plugin VMRC version 5.1.0 build 1060398

    Customer support version 5.1.0 build 832030

    Flash Player WIN 11,8,800,94

    Browser Google Chrome Version 29.0.1547.66 m

    After all components of vCenter update I am more able to use Chrome to access vCenter Web Client.  When the connection page opens, I get the following error:

    Connection error: could not connect to vSphere Web Client. Contact your administrator to resolve this problem.

    If I try to connect, I get this error:

    Provided credentials are not valid.

    Everything works fine if I use IE 10.  Someone at - it see this before and knows how to solve?

    Thank you

    Mux

    It is fixed.  I had 'Block third-party cookies' checked.  After unchecking it connected perfectly.

    Mux

  • See 5.1.2 problem with smart cards - reader to not see Office.

    Hi all

    We try to roll an office linked Clone pool that is used by our service accounts and as such, they need to be able to use for banking smart cards. We have installed all the necessary software on the machine of model (GemSafe Gemalto) and also one of our Thin Clients (Wyse V10L or C10LE) connected to the model directly via RDP with the card reader chip attached to ensure that different drivers installed correctly and all is well, the virtual machine is able to see the smart card reader.

    The problem comes when spread us these machines up to the pool, the smart card reader is not detected at all. We tried to connect from the Client light view or via RDP directly to one of the linked Clone desktops and both meet the same problem, that is, the drive is not seen at all. If we plug/unplug the drive of the Wyse terminal we see it be detected in the log of the events on the Client itself.

    Can what tools or newspapers we use side view or VMware to solve this problem?

    To confirm, in the settings to connect to the server by smart card authentication is set to optional. In Global political USB access is set to allowed.

    If need more information please ask and I will be happy to provide it.

    Thanks in advance.

    Right, we got to the bottom of it... and I am kicking myself!

    There is a GPO side configuration of the active computer. Administrative Templates/Windows components/Remote Desktop Services / Remote Desktop Session Host / Device and resource Redirection - do not allow redirection of card device chip.

    GRRRR!

  • How to load .cap on a smart card

    Hello world!

    I am very confused with java cards. I have written an applet for java card. Tried in Eclipse + JCWDE. Send a few APDU units with apdutool.bat. Works great!

    However, I would like to go further and try on a real card chip. The only problem is that I don't know how to load on my card .cap file. I tried to find forums, references or something like that, but all I found was "trying to load, but get the error" or something like that.

    I use the JCOP for Eclipse tool (if only for any help)

    Can someone find works me of loading in princip? Is their any classes that can be used to simplify the task?

    Any help is appreciated
    / L

    Yes of course. Normal .zip file.
    I can print the contents of the file load.jcsh here:

    # /set-var path d:/Wi-Fi/javacard/download/eappsk32k
    #Switch trace mode on and connect to a PC/SC smart card reader
    #
    /mode trace=on
    /terminal
    #
    #Reset the card (request ATR) and select the CardManager
    /card
    #Set the keys in key set 255 of the JCShell for authentication later on
    #
    set-key 255/1/DES-ECB/404142434445464748494A4B4C4D4E4F
    set-key 255/2/DES-ECB/404142434445464748494A4B4C4D4E4F
    set-key 255/3/DES-ECB/404142434445464748494A4B4C4D4E4F
    #
    #Begin authentication using the appropriate key set
    init-update 255
    #
    #Complete authentication
    ext-auth
    #
    #Display the card registry to check if the applet is loaded and installed
    card-info
    #
    #delete 11223344556601
    #delete 112233445566
    card-info
    #
    #Upload the package holding the applet
    upload ${path}openeapsmartcard.cap
    #
    #
    #Install the applet in the package
    install 112233445566 11223344556601
    #
    #Display the card registry to check if the applet is loaded and installed
    card-info 
    

    You should do a few substitutes for your project.

  • Store data customized for vSphere web client plugin

    Hello

    I'm working on vSphere Web Client plugin development. We need to store custom data on vCenter server that can be configured by the user only once.

    Plugin service will read the data and use it to connect to our server.

    Currently, we create an XML with encrypted data and store it in the folder/usr/local on vCenter.
    What are the best practices for storing these data?

    Thank you
    Vincent

    Small data files can be stored on the same device running the Web Client (VCSA for Linux) or vCenter for Windows

    In order to make your code compatible with the next vSphere 6.0 5.5 plugin you must use the following directories that will retain the write access:

    -/ Import/Storage on Linux

    -System.getenv ("PROGRAMDATA") under Windows.

    Create a subdirectory of the plugin and write your files.  See the code in the samples/global services/Global Services-service/src/main/java/com/vmware/samples/global services/GlobalServiceImpl.java

  • Widgets/Dashboard customized for vSphere Web Client?

    Hey all,.

    I have tested vCOPS 5.7 in the laboratory and have a question:

    Is it possible to create dashboards customized to the users that connect through the Web Client vSphere?

    Or is it only possible to create dashboards customized during connection of users through the personalized UI Portal?

    I have a few users who will record only by using the Web Client vSphere.  Although the predefined dashboards is nice, I want to know if any degree of customization is possible.

    Thank you

    Andrew

    It depends on what exactly you want to customize, but generally vSphere UI as a whole is much less customizable than the custom user interface. It depends on whether access you if via the vSphere Client or directly through the browser. The widgets in the dashboard of the user interface of vSphere are hard defined by object type. The customizable part of vSphere UI is tab analysis (Heatmap Gallery).

    Hope this helps,

    Alex D.

  • KB931125 Rompt Web server authentication by smart card...

    Windows 2008 Enterprise SP2 IIS7

    The Web site is authenticated against AD with smart card.  Works great... until KB931125 is installed.  As soon as this update of root certificate is installed, all customers get 403.7 error.  I'm going back the VM to the snapshot before KB931125 was installed and everything works well again.  It don't seem to be a way to delete/cancel the damage inflicted by this update of root certificate.

    I found this post: http://msmvps.com/blogs/bradley/archive/2007/03/01/warning-problems-with-root-certificates-update-kb931125.aspx and cleaned on the certificates, but it is not always correct it.

    Please notify.

    It turns out that I'm not a not delete simply not enough of the root certificates.  It works now after the removal of about 1/2 of them.

  • How to disable the "Insert smart card" dialog box keeps appearing after the connection?

    Running Windows 7 64 bit on a laptop Dell which includes and integrated smart card reader. My configuration does not require a smart card to log on. I was wondering if the smart card reader has worked, I plugged a card chip used on another system. The driver is installed automatically, so it appears the drive works.

    Now, whenever I log in, the "Insert smart card" dialog box is displayed. If I cancel or close the box, he continues to reappear every few seconds. How to disable this behavior?

    Update: this is somehow connected to Outlook 2003. I have 4 different e-mail accounts. The "Insert smart card" box appears only when checking for my att account (yahoo), which is configured by using POP3.

    Go to the Services.msc and check the settings for the smartcard (manual test) service.

    Tom

    PS 29 December 2011

    The position of the OP, have been reported since a lot of this problem on the some notebooks Dell and HP. There are a few reports that a replacement of the motherboard fixed the problem and the other that the relocation of a certain connector (no mention of exaclly one that) solves the problem. Direct contact with the manufacturer of the laptop computer, Dell or HP wether, might be useful. Try a follow-up if you have already made contact.

    Tom

  • Smart card reader does not correctly connect once the virtual machine is restored from sleep using the vmrum controls

    Smart card reader does not correctly connect once the virtual machine is restored from sleep using the vmrum controls

    Scenario is,

    1. smart card reader is connected to the VM with card inserted in

    2 initiate a prompt suspension of the VM toolbar

    3. now to resume the virtual machine by using vmrun command into the host machine

    WS t vmrun start xxx.vmx

    Now, the recovery of VM but the smart card reader that was previously connected does not work properly in VM that is to say, sometimes after CV chip card reader driver is uninstalling and a few other times, chip connected to the drive is not available on a virtual computer

    My requirement is after power, smart card reader can stay connected to the virtual computer with the already installed driver and the smart card.

    Kindly help with this problem.

    Host operating system: Victoire 2012 R2

    The VM OS: win 10 x 64

    Thank you!!

    Dear all,

    I had a work around for this problem. By adding "usb.autoConnect.device0 ="0xVID:0xPID"" this statement to the VMX file, solves this problem, that is, whenever the VM is wake-up by clicking on the link CV or using vmrun commands, it connects the unit in question automatically and it is charging correctly with his driver. Obtaining smart card detected after sleep\hibernate with no problems.

    VID & PID is respective ID of the device that can be seen in the properties of the Device Manager "Device Instance path".

    For more information about this, visit VMware KB: automatic connection of USB devices to the virtual machine power on

    ~ Surendra

  • VSphere Web Client cannot connect to the server vCenter Single Sign On.

    I'm running the virtual appliance of the trial 5.5.0.20400 build 2442330 on ESXi 5.5.0, 2068190

    While I try to log on to the Web Client, I get this error.  VSphere Web Client cannot connect to the server vCenter Single Sign On.

    I put fallow the steps to disable SSO by changing the webclient.properties line add file and ad sso.enabled = false .    Then on the vCenter Server Appliance, restart the vSphere client service by typing service vsphere-client restart .

    I enclose the reference files.

    All ideas will be useful


    This answer was simple, all I had to do was remove the # in front of the statement in the file.   and SSO has been disabled after the restart of the service.

Maybe you are looking for