Get smashed on vCenter 5.1 Setup SSO

VMWare experts,

Get smashed on the vCenter 5.1 Setup SSO and I was wondering if I could get assistance.

That's what I've done so far:

1.) Execute the "rsaIMSLiteMSSQLSetupTables.sql".

2.) change only the part "C:\Changeme" of the script that has been 'C:\Program Files\Microsoft SQL Server\MSSQL10_50.SQL2K8R2\MSSQL\DATA '.

3.) Execute the script that creates a database named RSA

I then went to vCenter install Simple which began by installing the SSO, I set myself on.

Under Database Type: I chose MSSQL:

I paint a white following the syntax remaining fields.

The names of the affected servers are:

Name of the SQL Server: TEST - SQL01.test.local

Named instance of SQL: SQL2K8R2

vCenter Server: TEST - VC01.test.local (where I install the SSO, inventory service, etc.)

No idea on what to set for name of database, Windows, JDBC URL, authentication etc.

I tried to follow the installation guide and there was no mention of whether I needed to implement ODBC connections or something like that.

Any help would be greatly appreciated.

Of course, I'll be happy to help you, Tony!  Of course, I thought the vSphere 5.1 Setup Guide and was a little kludgy SSO, too.

Assuming that you already had a MSSQL DB taken in charge and install SSO on another virtual Windows computer or server (SSO vCenter separation is a best practice), here is what I recommend to you present to SSO with a database of MSSQL remote (not a local MSSQLEXPRESS).

Note: Your Windows SSO server does not belong to an AD domain at this point because you can combine SSO with AD al later through the Web Client of VirtualCenter, but if she is joined before running the installation of SSO, it will save you this step.

While there may be other methods supported to install SSO, here are the basic steps that worked for me:

  • Locate the rsaIMSLiteMSSQLSetupTables.sql on the installation of vCenter 5.1 ISO ([drive]: \Single Sign On\DBScripts\SSOServer\schema\mssql\) and double-click it in the MSSQL Server, which will open in SQL Management Studio for editing running.
  • Change the paths of the three[C:\CHANGEME\...] in the SQL script with the file appropriate to your DBs & Trans newspapers railways.  In my case, I put the DB and indexes on D:\MSSQL\DB and on E:\MSSQL\LOGS newspapers
  • Run the script, and if all goes well, he will create a RSA in MSSQL database and successfully complete
  • [IMPORTANT] Right-click on the top level of SQL Server icon and select Properties, select Security and select Windows and SQL Server authentication mode (it is now a requirement of VMware as indicated on page 241 of vSphere 5.1 Setup Guide and) and click OK.
  • Restart MSSQL & Agent of Service for this setting to take effect.
  • Create a new SQL user account (i.e. sso) in MSSQL Server-> Security-> connections in the hierarchy of SQL Management Studio (make sure that the account does not require that you must change the password during its first connection) and give it to the server role SYSADMIN and dbo in the DB of RSA under mapping of users, click OK.
    • Note: You can avoid running the other SQL 'users' script mentioned in thevSphere 5.1 Installation Guide and for creating user SSO if you do this step and let the SSO installation program create the necessary users to the site.
  • Sign in to your soon SSO Windows server as administrator
    • Note: Ensure that your Windows server is properly would be hostname, IP would be, with before and would reverse DNS synchronization and clocks.  See the documentation for the other terms, if necessary.  You can join an AD domain if you want right now.
  • Start the program installation 5.1 SSO to the ISO 5.1 vCenter vCenter.
  • Create a main node for SSO (assuming this is your first), click Next.
  • Select to create the head for a new Single Sign-On installation vCenter node (which you can later), click Next.
  • Enter a master password that you want to use for SINGLE sign-on, click Next.
  • Select use an existing supported database, click Next
    • Note: Because SSO uses JDBC, there is no need to create an ODBC System DSN for SSO.
  • Enter RSAin the database name field, enter your MSSQL Server's FULL domain name in the field name of host or IP address and, finally, enter sso (from my example above) the database username and the password you created, click Next.
    • Note: nothing else on this page must be changed
  • Fill in the name of the SSO (not the IP address!) server FQDN, click Next.
  • Keep the box using network service account, click Next
    • Note: Given that I had really no specific guidance on the use of a service with SSO account, I just went with the default for now.  Perhaps in the future I will use a service account, but given the SSO is somehow independent AD I thought to go with a choice course and do not a service account AD which can be revoked if SSO is seconded of this announcement in the future.
  • Select your preferred installation folder, click Next.
  • Keep the port by default, click Next.
  • Click on install!

SSO should install correctly and to create user accounts appropriate SQL called RSA_USER & RSA_DBA.

  • Disable or remove the sso SQL Admin account you created as it is no longer necessary once the SSO is installed.

Then, to install the Service to vCenter inventory where you want as well as the vCenter Server and Web Client (i.e. separate VMs)

Tip: You can only connect to vCenter 5.1 by using a local administrator (Windows) via vSphere Client 5.1 account.  To establish the rights vCenter to administrator in a Windows/AD user account (assuming that SSO was associated by AD), first open a session in vCenter (via vSphere Client 5.1) using admin as username and the SSO master password , you created during the installation of SSO.  Which will take you in and you can make adjustments if necessary permission.

Before that I'm totally flamed for what others might offer as a way of more refined for SSO rose, I realize VMware offers a few different implementation approaches and perhaps best practices will emerge in the coming months.  My intention was to share my success with Tony in SSO getting online and I hope this helps other people faced with this new service of vCenter.

Please do not hesitate to comment on everything that you feel could be improved with these general installation steps or let me know how it worked for you.

-Matt

Tags: VMware

Similar Questions

  • Win 2003 error - try to add and remove windows components I get this error. IIS.dll Setup library could not be loaded

    When you try to add and remove windows components I get this error. IIS.dll Setup library could not be loaded, or function OcEntry could not be found. code error 0x7e is on a system win 2003

    Hi MickRl,

    The question you posted would be better suited to the TechNet community. Please visit the link below to find a community that will provide the support you want.
    http://social.technet.Microsoft.com/forums/en-us/category/WindowsServer

  • I try to install MSI 4.5 with the windowsXP-KB942288-v3 - x 86 .exe file. I get a lot of messages that Setup could not back up the registry key... 5. access is denied.

    MSI 4.5 installation problems

    I try to install MSI 4.5 with the windowsXP-KB942288-v3 - x 86 .exe file. I get a lot of messages that Setup could not back up the registry key... 5. access is denied.

    I get this for about 10 different registry keys. If I hit ignore whenever Setup ends, but he told me that he have not installed properly and windows may not work.
    Any body have ideas of how to do to solve this problem?
    Thank you

    I did some further research and came across this http://support.microsoft.com/kb/949377 while it is not the same update I tried to install it, the problem seemed similar. I tried Microsoft fix it at the bottom of the page and I tried again to install MSI 4.5. This time, it worked.

  • When XP is "windows xp for first use mode setting" it loads to 99% and then I get the message "unable to complete Setup.

    I upgraded my 64 new image computer windows 7 Home premium Edition to windows 7 using the upgrade anytime professionoal.  I downloaded the fix for quad core to use virtual pc and windows xp mode.  When XP is "windows xp for first use mode setting" it loads to 99% and then I get the message "unable to complete Setup.  I service request # 1182160056 but the phone lines of microsoft do not work.  Any suggestions?

    Have its possible that this is a download corrupted Windows XP mode, you tried to download it again and see if it works? Also, make sure that you first install Windows Virtual PC.

    Click Start, type: enable or disable windows features

    Press enter on your keyboard

    Scroll down and make sure that Windows Virtual PC is checked.

    Click OK

    Restart if prompted.

    http://www.notebooks.com/2009/11/23/using-Windows-Virtual-PC-with-Windows-XP-mode/

  • vCenter administrator as an SSO administrator

    Is it possible to configure vCenter administrator as an SSO administrator?

    Add the users in the administrator group (homepage-> Administration-> SSO users and groups-> tab group) to promote as an SSO administrator.

    Nithin-

  • VCO 5.5 on vCenter 5.0 installation (SSO)?

    Hello

    We lack vCenter 5.0 Update 3. We were assigned to installing vCenter Orchestrator. Preference version 5.5.

    I have read a lot on the subject. SSO is quite often mentioned, but we have to 5.0... Is it possible to install it without SSO?

    Thank you in advance.

    / Pete

    Yes, you can install vCO using LDAP authentication.

  • Get - VM | Multiple VCenter | Search order

    If I am connected to multiple vCenters and I do a get - vm, it searches all vCenters. In what order are the sought vCenter and when the virtual machine is found can he return the vcenter, it was found in? Is there a way to return the vcenter Get - VM to identify those who he found? This can be confusing and dangerous if you have many vcenters and VMs with the same name. Everything suggests, or help would be appreciated.

    Thank you

    Rick

    I remember something like below, Luc was offered as a solution on this community, in my powercli first days of learning.

    Notice-EEG - ViewType virtualmachine. Select name, @{N = 'vcenter'; E={$_. . {(Trimend Client.ServiceUrl.Split('/') [2] (": 443")}}

  • vCenter 5.5 and SSO multimaster device

    Dear guys,

    I think the move to vcenter 5.5 but I can't find a clear statement that I can deploy many appliances in version 5.5, but what all SSO vcenter?
    can I keep SSO built appliances and all the multimaster configuration?

    multimaster replication between VCSA is currently not supported. William Lam wrote an article concerning the replication multiaster SSO between Windows Server vCenter Server and a http://www.virtuallyghetto.com/2013/12/hybrid-environment-leveraging-sso-multi.html VCSA but it's too not a configuration supported for the moment.

  • vCenter for lack of SSO and no. log in the same root not

    Hi guys

    A journal of issues was announced today and I tried with my AD credentials to log my vCenter device 5.1 (build 880146). No go.

    Tried with root credentials. I couldn't either.

    So lucky me I found a loged in as Web client session yesterday I'm gone my SSO config I showed me this

    SSO_Error.jpg

    then I went to vCenter Web Config and tried to restart the server and still the same issue

    vCenter_Service.jpg

    So at this moment I don't really know what has failed if was SSO or vCenter Server Service... so any idea that to find the cause?

    -updated

    Hey guys I found this/storage/sore we full-no idea how to avoid this problem?

    Size of filesystem used Avail use % mounted on

    / dev/sda3 9.8 G G 4.2 5.1 G 46%.

    udev 4.0 G 104 K 4.0 G 1% / dev

    tmpfs G 4,0 4,0 G 0 0% / dev/shm

    / dev/sda1 128M 21 M 101M 17% / Boot

    / dev/sdb1 20G 20G 100% 0/storage/core

    / dev/sdb2 20G 3.2 G 16G 17% / storage/log

    / dev/sdb3 it 20G 15 G 4.4 G 77% / storage/db

    Thank you very much

    the kernel contains the dump files... If you don't need those... Delete them... you can also take a look at this thread to have a store NFS to store the unannounced dumps core.

    http://communities.VMware.com/thread/403107?start=0&TSTART=0

    Concerning

    Girish

  • New vCenter Server install fails - SSO

    I use a new system nested for a lab at home.  I'm under Workstation 9 with the latest version of vCenter.  I have the ms SQL all set up and verified.  The clocks are set to the same time a few seconds apart.  However, during installation when I get to vCenter single sign on Information, he returned with the error:

    Incorrect entry - a command line argument is wrong, a file is not found or the spec file does not contain the required information or the clocks on the two systems are not synchronized. Check vm_ssoreg.log in the temporary folder of the system for more details.

    I checked the two KB with information about this,

    http://KB.VMware.com/selfservice/microsites/search.do?language=en_US & cmd = displayKC & externalId = 2033880

    http://KB.VMware.com/selfservice/microsites/search.do?language=en_US & cmd = displayKC & externalId = 2033875

    and after the steps, I still can't pass it.  Then, I found this blog, http://blogs.vmware.com/kb/2012/09/vcenter-server-5-1-installation-fails-with-a-wrong-input-and-certificate-already-expired-error.html#.UWZSkJOThyI and reading, I get the assumption this isn't a big deal, however, I still can't complete the installation until it is fixed, at least as far as I know.

    I'm pretty new to this forum and to implement vmware but learn a lot, but this one left me speechless right now.

    Reflections on how to solve this problem, other things to test, etc.?

    David Seaman playing excellent series of blog on the configuration is

    http://derek858.blogspot.com.au/2012/09/VMware-vCenter-51-installation-part-1.html

    Michael Webster on his blog also has a great serise on certificates

    www.longwhiteclouds.com

  • Problem with vCenter 5.1 (W2K8) & SSO without AD

    Hi all

    I have problems with my first experiences with vC 5.1 / SSO. I have a virtual machine running W2K8 + DNS but no ads. This is what I want and need. 5.0 had no problem with that, but in 5.1, I can't make everything work.

    Installation of SSO, the inventory service and vC (all 5.1), all this hard work and all the Associates services start. However, when I then restart the virtual machine, the vC service does not start, start services very well but no vC. It all started at the session of runtime install, but not after the restart of a virtual machine. By default use SQL Express installation options dbs SSO and vC have been taken.

    vpxd.log has a relevant error of:

    "Failed while trying to connect to the SSO Admin Server: no connection could be made because the target machine actively refused it.

    DNS is all right, forward and backward. Despite the warning (attachment), SSO is happy to install without this AD.

    I don't understand why vC post install but then fail to start after reboot.

    Surely the vC (Win) 5.1 is not having to be in an AD domain?

    What Miss me?

    Thank you and best regards,

    Mac

    I did a few more tests to prove the change the start mode of services could solve the problem.

    Today I install VC with simple installation.
    After installation completed, before the reboot, take a sanpshot of the virtual machine.
    Restart the VC, Vcenter service failed to start as usual.
    Then go back to the snapshot before restarting immediately after installation.
    And changed the start mode of service,

    vCenter single sign on Service - automatic (delayed) automatic
    VMware vCenter Inventory Service - automatic Automatic (delayed)
    VMware vSphere Profile - Driven Storage Service - from Automatic Automatic (delayed)
    VMwareVCMSDS - from Automatic Automatic (delayed)

    then restart VC.
    Services started normally vCenter.

    If the sequence to start the service really matters!

  • vCenter Server 5.1, SSO and Service of the inventory on a single server?

    It is said in articles vmware all 3 roles can be installed for small deployments on a server with enough hardware requirements (2 hearts and 10 GB of RAM and hard drive 100 GB recommended).

    Question is what is considered to be low?

    Can I install all 3 roles on a server for lets say 14 guests and about 200 virtual machines?

    If I have 3 vCenter servers I'd better install all 3 roles on each of the 3 servers. or have a SSO or SSO HA for all vCenter servers?

    The problem is that we want to separate the vCenter by area.

    A big thank you!

    Yes, you can install all 3 roles on onse Server. We installed it on a virtual machine with 8 GB of RAM, 100 GB HD and 4 CPU.

    For the decision on wheter to install all 3 roles on 3 vCenter servers, I recommend you to read the next page.

    http://KB.VMware.com/selfservice/microsites/search.do?language=en_US&cmd=displayKC&externalID=2032135

    If I should make the decision, I separate completely all 3 areas and thus install 3 with 3 roles vCenter servers. But this does not mean you have to do the same thing.

  • getting name from vCenter for VM

    Hello

    Is there a way to get the name of the vCenter virtual machine is managed by, if I start with the VM name?

    I have 2 vCenters joined in related modes and connect both at the same time when I run scripts. I would like to add a field in my outings such as VMname, vCenter, VMhost, etc.

    I had an idea to follow the parent files; but seem to stop at the data center.

    Thank you.

    You can retrieve the name of the property of the virtual computer object vCenter server. Like this:

    (Get-VM YourVMName).Uid.Split(":")[0].Split("@")[1]
    

    PowerCLI 4.1, you can extend the virtual computer object with a vCenterServer property. Like this:

    New-VIProperty -Name vCenterServer -ObjectType VirtualMachine -Value {$Args[0].Uid.Split(":")[0].Split("@")[1]}
    Get-vm YourVMName | Select-Object -Property Name,vCenterServer
    

    Best regards, Robert

  • Get-view FileManager = vCenter only? How to interact with the data without her store?

    Hello

    I am trying to create a folder directly on a data store and copy a vmx file.  What I've read I need to use Get-file manager mode, but this seems to be only available on vCenter.

    Is there anyway to interact with the data using PowerCLI store when it connects directly to a box of ESX?

    Thanks for your help,

    KeV

    The shortcut notation

    Get-View FileManager
    

    is not available when connected to an ESX host.

    But you can get the object as follows

    Get-View (Get-View ServiceInstance).Content.FileManager
    

    ____________

    Blog: LucD notes

    Twitter: lucd22

  • Get involved and vCenter on Linux without having it already on Windows

    Hello

    How does a get on the beta, can't seem to find a download for it.

    This beta version open to users without vCentre already runs on Windows?

    I have several servers ESX and ESXi, but never bought vcenter but want to try the Linux version.

    Thank you

    If you go to the homepage for this forum very http://communities.vmware.com/community/beta/vcserver_linux you see in the announcements section upward, a download button.

Maybe you are looking for

  • Need a replacement for my 2008, three batteries, wireless, white keyboard for office 2008 Mac

    Where can I buy a wireless network, three battery, white keyboard for my Office Mac 2008 mine is *.

  • IX2 - dl won't start

    A recently released a single 1gig WD drive my ix2 - dl and replaced with a new red WD drive to 2 giga. Original disc worked fine. New drive will not work. I find myself with a blue and red light flashing again and again. I've cleaned the disc several

  • Toshiba controls freezes Windows Explorer on Satellite L350D

    Hey guys, my Toshiba controls (Mute, play, stop, next and forward) buttons literally freezes Windows Explorer. I'm not 100% sure if there is a driver that comes pre-installed, but if there is then could someone point me in the right direction on how

  • cards do not sync contacts

    Help! With the help of MAC (OS X El Capitan, v 10.11.12), cards in my Contacts get screwed up.) Use us iCloud and Contacts started maintaining different cards on my Mac and on iCloud - but there is no way to know what contacts does. I merged contacts

  • Upgrade processor LENOVO C540

    Hello. Going to change the processor in Lenovo C540 all-in-One desktop Core i3 - 3220T for the Core i7 - 3770S First, I checked the FCLGA1155 socket and chipset motherboard H61, they are compatible with the new processor. Then I bought a new original