After you have successfully installed the Platform Services Controller, you must add the appliance to your Active Directory domain. After that, add the Active Directory domain as an identity source to vCenter Single Sign-On. When you do, users in the Active Directory domain are visible to vCenter Single Sign-On and can be assigned permissions to view or manage SDDC components.

1

Log in to the Platform Services Controller administration interface.

a

Open a Web browser and go to https://sfo01w01psc01.sfo01.rainpole.local.

b

Click the link for Platform Services Controller web interface.

c

Log in using the following credentials.

Setting

Value

User name

administrator@vsphere.local

Password

vsphere_admin_password

2

Add the Platform Services Controller instance to the Active Directory domain.

a

In the Navigator, click Appliance Settings, click the Manage tab, and click Join.

b

In the Join Active Directory Domain dialog box, enter the following settings and click OK.

Setting

Value

Domain

sfo01.rainpole.local

User name

ad_admin_acct@sfo01.rainpole.local

Password

ad_admin_password

3

Reboot the Platform Services Controller instance to apply the changes

a

Click the Appliance settings tab, and click the VMware Platform Services Appliance link.

b

Log in to the VMware vCenter Server Appliance administration interface with the following credentials.

Setting

Value

User name

root

Password

psc_root_password

c

On the Summary page, click Reboot.

d

In the System Reboot dialog box, click Yes.

e

Wait for the reboot process to finish.

4

After the reboot process finishes, log in to https://sfo01w01psc01.sfo01.rainpole.local again using the following credentials.

Setting

Value

User name

administrator@vsphere.local

Password

vsphere_admin_password

5

Verify that the Platform Services Controller has successfully joined the domain, click Appliance Settings and click the Manage tab.

6

Add Active Directory as a vCenter Single Sign-On identity source.

a

In the Navigator, click Configuration and click the Identity Sources tab.

b

Click the Add icon to add a new identity source.

c

In the Add Identity Source dialog box, select the following settings and click OK.

Setting

Value

Identity source type

Active Directory (Integrated Windows Authentication)

Domain name

SFO01.RAINPOLE.LOCAL

Use machine account

Selected

d

Under Identity Sources, select the rainpole.local identity source and click Set as Default Domain to make rainpole.local the default domain.

e

In the confirmation dialog box, click Yes.