Install or Upgrade vSphere Authentication Proxy
Install vSphere Authentication Proxy to enable ESXi hosts to join a domain without using Active Directory
credentials. vSphere Authentication Proxy enhances security for PXE-booted hosts and hosts that are
provisioned using Auto Deploy, by removing the need to store Active Directory credentials in the host
configuration.
If an earlier version of the vSphere Authentication Proxy is installed on your system, this procedure
upgrades the vSphere Authentication Proxy to the current version.
You can install vSphere Authentication Proxy on the same machine as the associated vCenter Server, or on a
different machine that has network connection to the vCenter Server. The vSphere Authentication Proxy is
not supported with vCenter Server versions earlier than version 5.0.
The vSphere Authentication Proxy service binds to an IPv4 address for communication with vCenter Server,
and does not support IPv6. The vCenter Server can be on a host machine in an IPv4-only, IPv4/IPv6 mixed-
mode, or IPv6-only network environment, but the machine that connects to the vCenter Server through the
vSphere Web Client must have an IPv4 address for the vSphere Authentication Proxy service to work.
Prerequisites
n
Install vSphere Auto Deploy. See
“Install or Upgrade vSphere Auto Deploy,”
on page 109.
n
Verify that you have administrator privileges.
n
Verify that the host machine has Windows Installer 3.0 or later.
n
Verify that the host machine has a supported processor and operating system. vSphere Authentication
Proxy supports the same processors and operating systems as vCenter Server. See
“vCenter Server
Software Requirements,”
on page 22 and
“Hardware Requirements for vCenter Server, the vSphere
Web Client, vCenter Inventory Service, and vCenter Single Sign-On,”
on page 17.
n
Verify that the host machine has a valid IPv4 address. You can install vSphere Authentication Proxy on
a machine in an IPv4-only or IPv4/IPv6 mixed-mode network environment, but you cannot install
vSphere Authentication Proxy on a machine in an IPv6-only environment.
n
If you are installing vSphere Authentication Proxy on a Windows Server 2008 R2 host machine,
download and install the Windows hotfix described in Windows KB Article 981506 on the
support.microsoft.com Web site. If this hotfix is not installed, the vSphere Authentication Proxy
Adapter fails to initialize. This problem is accompanied by error messages in
camadapter.log
similar to
Failed to bind CAM website with CTL
and
Failed to initialize CAMAdapter.
Gather the following information to complete the installation or upgrade:
n
The location to install vSphere Authentication Proxy, if you are not using the default location.
n
The address and credentials for the vCenter Server that vSphere Authentication Proxy will connect to:
IP address or name, HTTP port, user name, and password.
n
The host name or IP address to identify vSphere Authentication Proxy on the network.
Procedure
1
On the host machine where you will install the vSphere Authentication Proxy service, install the .NET
Framework 3.5.
2
Install vSphere Auto Deploy.
You do not have to install Auto Deploy on the same host machine as the vSphere Authentication Proxy
service.
3
Add the host machine where you will install the authentication proxy service to the domain.
4
Use the Domain Administrator account to log in to the host machine.
vSphere Installation and Setup
110
VMware, Inc.
Summary of Contents for VS4-ENT-PL-A - vSphere Enterprise Plus
Page 6: ...vSphere Installation and Setup 6 VMware Inc ...
Page 8: ...vSphere Installation and Setup 8 VMware Inc ...
Page 10: ...vSphere Installation and Setup 10 VMware Inc ...
Page 28: ...vSphere Installation and Setup 28 VMware Inc ...
Page 70: ...vSphere Installation and Setup 70 VMware Inc ...
Page 100: ...vSphere Installation and Setup 100 VMware Inc ...
Page 122: ...vSphere Installation and Setup 122 VMware Inc ...
Page 138: ...vSphere Installation and Setup 138 VMware Inc ...