"SC" Scom-agent installation-based on Windows workgroup

Source: Internet
Author: User

"SC" Scom-agent installation- based on Windows workgroup

-------Windows------scom-agent Installation--------

Premise

Client Open port: 5723

Servers involved: IP, Hostname

Account password involved: admin, scomadmin

Scom Management Pack: (%windows%*). Mp

Tools: Agent, MOMCertImport.exe

Tips: Adding Host records (server-related)

--Install the client Agent

-->ie Download Root Certificate

--Import to the client's local computer \ Trusted Root certificate issuing schema

-Create and submit a request to the CA

-->ca Issuing certificates

--The client downloads the certificate that the installation applies To

--Export the current user \ Personal certificate \ Certificate

--Import local computer \ Personal certificate \ Certificate

-->momcertimport Tool Import Certificate

--Restart Agent service

--Discover your computer

--Verify

Install Agent

Manually install the agent on the client, specifying the management group name and the Management server.

1. First, you need to have a root CA, such as no installation of the root CA.

Second, download the certificate chain

2.IE Open https://< Certificate Server ip>/certsrv.

3. Select: Download the CA certificate, certificate chain, or CRL.

4. Select: Download the CA certificate chain.

5. A dialog box will pop up, allowing you to download a certificate file "certnew.p7b" and save it locally.

Third, import the certificate chain to the local computer \ Trusted Root Certificate issuance schema

6. Run the MMC, add the certificate, and select the computer account.

7. Select the Trusted root certificate issuance schema, right-click the certificate, and select Import.

8. Change the file type to the files of type to PKCS #7 certificate (*.spc,*.p7b) and select the certnew.p7b you just downloaded to import it.

9. The root certificate has been successfully imported.

Iv. Create and submit an application to CA (apply for personal certificate for monitoring communication)

10. The client browses https://< Certificate Server Ip>/certsrv again. Request a certificate from the CA.

11. Select Request Certificate-Advanced certificate request-Create and submit a request to the CA.

12. In the name, fill in the FQDN of the client, select other in the required certificate type, and fill in the OID 1.3.6.1.5.5.7.3.1,1.3.6.1.5.5.7.3.2

13. Tick two options: Automatic key container name and tag key can be exported.

14. In the friendly name, fill in the FQDN of the client and submit it.

15. After submission, the certificate is in a pending state and requires CA approval.

16. On the CA server, Server Management-Tools Select Certificate Authority. Go to the pending certificate, select by Certificate ID-right click on issue. {Server-side}

V. The certificate that the client installs the request to

17. Client IE enters https://< Certificate Server ip>/certsrv.

18. Select View Certificate request status, select the certificate you just requested, install.

VI. Export the certificate. (Current user \ Personal certificate \ Certificate)

In the current user \ Personal certificate \ Certificate Select the certificate you just requested, right-click, select Export, "Yes" includes password.

Seven, import the certificate. Import the personal certificate into the local computer \ Personal certificate \ Certificate.

20.MMC, local computer \ Personal certificate \ Certificate, import, select the certificate *.pfx that you just exported.

Viii. momcertimport Tool Import certificate.

The OPSMGR connector successfully loaded the specified authentication certificate. The MOMCertImport.exe tool installs the exported certificate.

21. After exporting the certificate, copy the MOMCertImport.exe from the installation CD of Scom and run it with the command line, a dialog window will appear and select the certificate that you just exported.

Nine, restart the agent service

22. After 5-10 minutes of waiting, the workgroup-based client can be monitored normally.

X. Discovery of computers.

23. Open the Scom Operations console, right-click "Manage", Tap Discovery Wizard, select Windows Computer. Specify the computer name, enter the client's account password, and discover.

Xi. verification.

24. Console to see if the host is present in Windows Agent Management.

This article is from the "Heart" blog, make sure to keep this source http://bennychen.blog.51cto.com/6323894/1770025

SC scom-agent Installation-Windows-based workgroup

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.