After installing vCenter5.5, it was found that domain users could not be added to manage vsphere, checking the documentation, which is now a default domain created when installing vcenter single sign-on: vsphere.local.
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M01/2E/B0/wKiom1Oaz9KgyeXMAAIagh-esss202.jpg "title=" 1.jpg " alt= "Wkiom1oaz9kgyexmaaiagh-esss202.jpg"/>
When adding a user, no domain user can choose to add,
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M02/2E/B1/wKioL1Oaz7zht-XlAAKFXNAZBH8240.jpg "title=" 2.jpg " alt= "Wkiol1oaz7zht-xlaakfxnazbh8240.jpg"/>
To add domain user rights, you must add an identity source and add an identity source as follows:
Log in to Vcenter via Web client using [email protected]:
https://192.168.2.202:9443/vsphere-client/
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M01/2E/B1/wKioL1Oa0EbCF6-YAAEqc-HCsWY916.jpg "title=" 3.jpg " alt= "Wkiol1oa0ebcf6-yaaeqc-hcswy916.jpg"/>
Configure SSO user authentication identity source
After logging in, click System Management > VCenter sign-on > Configuration, switch to the Identity Source tab, by default, login users (groups) only local operating system users (groups) and vsphere.local users (groups)
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M02/2E/B1/wKiom1Oa0I_wsWq9AAF75iJ1ma8468.jpg "title=" 4.jpg " alt= "Wkiom1oa0i_wswq9aaf75ij1ma8468.jpg"/>
To add a target domain in SSO:
Click +, add an identity source, select Active Directory (Integrated Windows authentication), domain name is the target domain, click OK
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M00/2E/B2/wKioL1Oa0JCTY-txAAILbcGnVkw641.jpg "title=" 5.jpg " alt= "Wkiol1oa0jcty-txaailbcgnvkw641.jpg"/>
After adding:
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M00/2E/B1/wKiom1Oa0NawpVV4AAJr4xsS5sQ105.jpg "title=" 6.jpg " alt= "Wkiom1oa0nawpvv4aajr4xss5sq105.jpg"/>
Permissions add post-Image:
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M01/2E/B1/wKiom1Oa0O7TEgwLAAFgju8Vq5w040.jpg "title=" 7.jpg " Style= "White-space:normal;" alt= "wkiom1oa0o7tegwlaafgju8vq5w040.jpg"/>
Verify that the configuration is successful:
After adding the identity source, you can add the domain user when you add administrative privileges to the vcenter or host.
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M02/2E/B1/wKiom1Oa0SryP5XeAAHjSn91CYY591.jpg "title=" 8.jpg " alt= "Wkiom1oa0sryp5xeaahjsn91cyy591.jpg"/>
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M01/2E/B1/wKiom1Oa0TnTdImPAAJb9PrHHwo619.jpg "title=" 9.jpg " alt= "Wkiom1oa0tntdimpaajb9prhhwo619.jpg"/>