"SC" Scom-agent installation- based on Windows workgroup
-------Windows------scom-agent Installation--------
Premise
Client Open port: 5723
Servers involved: IP, Hostname
Account password involved: admin, scomadmin
Scom Management Pack: (%windows%*). Mp
Tools: Agent, MOMCertImport.exe
Tips: Adding Host records (server-related)
--Install the client Agent
-->ie Download Root Certificate
--Import to the client's local computer \ Trusted Root certificate issuing schema
-Create and submit a request to the CA
-->ca Issuing certificates
--The client downloads the certificate that the installation applies To
--Export the current user \ Personal certificate \ Certificate
--Import local computer \ Personal certificate \ Certificate
-->momcertimport Tool Import Certificate
--Restart Agent service
--Discover your computer
--Verify
Install Agent
Manually install the agent on the client, specifying the management group name and the Management server.
1. First, you need to have a root CA, such as no installation of the root CA.
Second, download the certificate chain
2.IE Open https://< Certificate Server ip>/certsrv.
3. Select: Download the CA certificate, certificate chain, or CRL.
4. Select: Download the CA certificate chain.
5. A dialog box will pop up, allowing you to download a certificate file "certnew.p7b" and save it locally.
Third, import the certificate chain to the local computer \ Trusted Root Certificate issuance schema
6. Run the MMC, add the certificate, and select the computer account.
7. Select the Trusted root certificate issuance schema, right-click the certificate, and select Import.
8. Change the file type to the files of type to PKCS #7 certificate (*.spc,*.p7b) and select the certnew.p7b you just downloaded to import it.
9. The root certificate has been successfully imported.
Iv. Create and submit an application to CA (apply for personal certificate for monitoring communication)
10. The client browses https://< Certificate Server Ip>/certsrv again. Request a certificate from the CA.
11. Select Request Certificate-Advanced certificate request-Create and submit a request to the CA.
12. In the name, fill in the FQDN of the client, select other in the required certificate type, and fill in the OID 1.3.6.1.5.5.7.3.1,1.3.6.1.5.5.7.3.2
13. Tick two options: Automatic key container name and tag key can be exported.
14. In the friendly name, fill in the FQDN of the client and submit it.
15. After submission, the certificate is in a pending state and requires CA approval.
16. On the CA server, Server Management-Tools Select Certificate Authority. Go to the pending certificate, select by Certificate ID-right click on issue. {Server-side}
V. The certificate that the client installs the request to
17. Client IE enters https://< Certificate Server ip>/certsrv.
18. Select View Certificate request status, select the certificate you just requested, install.
VI. Export the certificate. (Current user \ Personal certificate \ Certificate)
In the current user \ Personal certificate \ Certificate Select the certificate you just requested, right-click, select Export, "Yes" includes password.
Seven, import the certificate. Import the personal certificate into the local computer \ Personal certificate \ Certificate.
20.MMC, local computer \ Personal certificate \ Certificate, import, select the certificate *.pfx that you just exported.
Viii. momcertimport Tool Import certificate.
The OPSMGR connector successfully loaded the specified authentication certificate. The MOMCertImport.exe tool installs the exported certificate.
21. After exporting the certificate, copy the MOMCertImport.exe from the installation CD of Scom and run it with the command line, a dialog window will appear and select the certificate that you just exported.
Nine, restart the agent service
22. After 5-10 minutes of waiting, the workgroup-based client can be monitored normally.
X. Discovery of computers.
23. Open the Scom Operations console, right-click "Manage", Tap Discovery Wizard, select Windows Computer. Specify the computer name, enter the client's account password, and discover.
Xi. verification.
24. Console to see if the host is present in Windows Agent Management.
This article is from the "Heart" blog, make sure to keep this source http://bennychen.blog.51cto.com/6323894/1770025
SC scom-agent Installation-Windows-based workgroup