NetIQ Aegis Adapter for VMware vcenter Server



Similar documents
NetIQ Aegis Adapter for Databases

Installation and Configuration Guide. NetIQ Security and Compliance Dashboard

Using NetIQ's Implementation of NetFlow to Solve Customer's Problems Lecture Manual

NetIQ AppManager for NetBackup UNIX

NetIQ AppManager for Cisco Interactive Voice Response. Management Guide

Integration With Third Party SIEM Solutions

Upgrading to MailMarshal Version 6.0 SMTP Technical Reference

Using the Message Releasing Features of MailMarshal SMTP Technical White Paper October 15, 2003

Identity as a Service Powered by NetIQ Privileged Account Manager Service Installation and Configuration Guide

Installation Guide NetIQ AppManager

MailMarshal SMTP in a Load Balanced Array of Servers Technical White Paper September 29, 2003

NetIQ AppManager ResponseTime for Microsoft Active Directory Management Guide

NetIQ AppManager for Self Monitoring UNIX and Linux Servers (AMHealthUNIX) Management Guide

NetIQ Privileged User Manager

NetIQ Directory and Resource Administrator NetIQ Exchange Administrator. Installation Guide

NetIQ AppManager for IP Phone Quality. Management Guide

User Guide Secure Configuration Manager

Optimizing Business Continuity Management with NetIQ PlateSpin Protect and AppManager. Best Practices and Reference Architecture

User Guide. NetIQ VigilEnt Policy Center. August 2011

PlateSpin Migrate 11.1 Installation and Upgrade Guide

Security and HIPAA Compliance

NetIQ AppManager for Self Monitoring (AM Health) Management Guide

PlateSpin Protect Installation and Upgrade Guide

NetIQ SecureLogin includes new features, improves usability, and resolves several previous issues.

NetIQ AppManager for Cisco Intelligent Contact Management. Management Guide

Identity as a Service Powered by NetIQ Services Director Installation Guide

User Guide. Directory and Resource Administrator Exchange Administrator. Directory and Resource Administrator Exchange Administrator User Guide

Virtualization Management Survey Analysis White Paper August 2008

Real-Time Security for Active Directory

Identity as a Service Powered by NetIQ Solution Overview Guide

NetIQ AppManager for Cisco Unity Express. Management Guide

NetIQ Identity Manager Setup Guide

PlateSpin Forge 4. Rebuilding Forge 4 Appliance 2. June 14, 2014

NetIQ Access Manager. Developer Kit 3.2. May 2012

NetIQ AppManager for Nortel Contact Center Manager Server. Management Guide

Foglight. Foglight for Virtualization, Free Edition Installation and Configuration Guide

Reporting Guide NetIQ Reporting Center

Common Driver Administration Guide. Identity Manager 4.0.2

TIBCO Spotfire Web Player 6.0. Installation and Configuration Manual

Quick Start Guide For Ipswitch Failover v9.0

WebTrends 7 Backup and Restore for MySQL Databases

Quick Start - Virtual Server idataagent (VMware)

Citrix XenServer Workload Balancing Quick Start. Published February Edition

Trial Guide. NetIQ Security Manager. October 2011

HP Intelligent Management Center v7.1 Virtualization Monitor Administrator Guide

NetIQ AppManager for Microsoft SharePoint Server. Management Guide

Installation Notes for Outpost Network Security (ONS) version 3.2

Upgrading From NetIQ Security Manager 6.5 to Sentinel 7.0

NetIQ AppManager ResponseTime for Microsoft SQL Server

EMC ViPR Controller Add-in for Microsoft System Center Virtual Machine Manager

Setup Guide Access Manager 3.2 SP3

Quick Start Guide for VMware and Windows 7

Samsung KNOX EMM Authentication Services. SDK Quick Start Guide

Basic System Administration ESX Server and Virtual Center 2.0.1

ArCycle vmbackup. for VMware/Hyper-V. User Guide

VMware Data Recovery. Administrator's Guide EN

VERITAS Backup Exec TM 10.0 for Windows Servers

QNAP Plug-in for vsphere Client: A User s Guide. Updated December QNAP Systems, Inc. All Rights Reserved. V1.0

RSA Authentication Manager 8.1 Virtual Appliance Getting Started

Symantec NetBackup Plug-in for VMware vcenter Guide. Release 7.6

Veeam Backup Enterprise Manager. Version 7.0

How To Monitor An Exchange Server With Netiqmc On A Windows 7.X.X (Windows 7) On A Microsoft Powerbook 2.X862 (Windows) On An Ubuntu 7.5 (Windows 8) On Windows

VMware/Hyper-V Backup Plug-in User Guide

Veeam Task Manager for Hyper-V

NetIQ Group Policy Administrator User Guide

PHD Virtual Backup for Hyper-V

NetIQ AppManager for Microsoft Cluster Server. Management Guide

NetIQ Security Manager Log Archive Server Best Practices January 9, 2012

Basic System Administration ESX Server 3.0 and VirtualCenter 2.0

Management Guide. NetIQ AppManager Connector for IBM Tivoli Netcool/OMNIbus

User Document. Adobe Acrobat 7.0 for Microsoft Windows Group Policy Objects and Active Directory

Administration Guide. SecureLogin 8.0. October, 2013

Acronis Backup & Recovery 11 Virtual Edition

Centrify Mobile Authentication Services

Installing and Administering VMware vsphere Update Manager

Symantec Backup Exec Management Plug-in for VMware User's Guide

Symantec AntiVirus Corporate Edition Patch Update

Quick Start Guide for Parallels Virtuozzo

Backing Up the CTERA Portal Using Veeam Backup & Replication. CTERA Portal Datacenter Edition. May 2014 Version 4.0

Getting Started with ESXi Embedded

WhatsUp Gold v16.2 Installation and Configuration Guide

Core Protection for Virtual Machines 1

Installing RMFT on an MS Cluster

Installing and Configuring vcenter Support Assistant

Centrify Mobile Authentication Services for Samsung KNOX

About the VM-Series Firewall

CONFIGURING MICROSOFT SQL SERVER REPORTING SERVICES

DIGIPASS KEY series and smart card series for Juniper SSL VPN Authentication

Lenovo Partner Pack for System Center Operations Manager

Interworks. Interworks Cloud Platform Installation Guide

Transcription:

Contents NetIQ Aegis Adapter for VMware vcenter Server Configuration Guide May 2011 Overview... 1 Product Requirements... 1 Supported Configurations... 2 Implementation Overview... 2 Ensuring Minimum Rights and Privileges... 3 Installing the vcenter Adapter... 3 This document provides information about installing and configuring the NetIQ Aegis Adapter for VMware vcenter Server product. This document also covers how to verify a successful installation. Installing the Event Renderer... 5 Configuring Additional vcenter Servers... 6 Verifying a Successful... Installation... 6 Understanding Activities... 7 Uninstalling the vcenter Adapter... 9

Legal Notice NetIQ Aegis is protected by United States Patent No(s): 5829001, 5999178, 6708224, 6792462. THIS DOCUMENT AND THE SOFTWARE DESCRIBED IN THIS DOCUMENT ARE FURNISHED UNDER AND ARE SUBJECT TO THE TERMS OF A LICENSE AGREEMENT OR A NON-DISCLOSURE AGREEMENT. EXCEPT AS EXPRESSLY SET FORTH IN SUCH LICENSE AGREEMENT OR NON-DISCLOSURE AGREEMENT, NETIQ CORPORATION PROVIDES THIS DOCUMENT AND THE SOFTWARE DESCRIBED IN THIS DOCUMENT "AS IS" WITHOUT WARRANTY OF ANY KIND, EITHER EXPRESS OR IMPLIED, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE. SOME STATES DO NOT ALLOW DISCLAIMERS OF EXPRESS OR IMPLIED WARRANTIES IN CERTAIN TRANSACTIONS; THEREFORE, THIS STATEMENT MAY NOT APPLY TO YOU. This document and the software described in this document may not be lent, sold, or given away without the prior written permission of NetIQ Corporation, except as otherwise permitted by law. Except as expressly set forth in such license agreement or non-disclosure agreement, no part of this document or the software described in this document may be reproduced, stored in a retrieval system, or transmitted in any form or by any means, electronic, mechanical, or otherwise, without the prior written consent of NetIQ Corporation. Some companies, names, and data in this document are used for illustration purposes and may not represent real companies, individuals, or data. This document could include technical inaccuracies or typographical errors. Changes are periodically made to the information herein. These changes may be incorporated in new editions of this document. NetIQ Corporation may make improvements in or changes to the software described in this document at any time. 2011 NetIQ Corporation. All rights reserved. U.S. Government Restricted Rights: If the software and documentation are being acquired by or on behalf of the U.S. Government or by a U.S. Government prime contractor or subcontractor (at any tier), in accordance with 48 C.F.R. 227.7202-4 (for Department of Defense (DOD) acquisitions) and 48 C.F.R. 2.101 and 12.212 (for non-dod acquisitions), the government s rights in the software and documentation, including its rights to use, modify, reproduce, release, perform, display or disclose the software or documentation, will be subject in all respects to the commercial license rights and restrictions provided in the license agreement. Check Point, FireWall-1, VPN-1, Provider-1, and SiteManager-1 are trademarks or registered trademarks of Check Point Software Technologies Ltd. ActiveAudit, ActiveView, Aegis, AppManager, Change Administrator, Change Guardian, Compliance Suite, the cube logo design, Directory and Resource Administrator, Directory Security Administrator, Domain Migration Administrator, Exchange Administrator, File Security Administrator, Group Policy Administrator, Group Policy Guardian, Group Policy Suite, IntelliPolicy, Knowledge Scripts, NetConnect, NetIQ, the NetIQ logo, PSAudit, PSDetect, PSPasswordManager, PSSecure, Secure Configuration Manager, Security Administration Suite, Security Manager, Server Consolidator, VigilEnt, and Vivinet are trademarks or registered trademarks of NetIQ Corporation or its subsidiaries in the USA. All other company and product names mentioned are used only for identification purposes and may be trademarks or registered trademarks of their respective companies. For purposes of clarity, any module, adapter or other similar material ("Module") is licensed under the terms and conditions of the End User License Agreement for the applicable version of the NetIQ product or software to which it relates or interoperates with, and by accessing, copying or using a Module you agree to be bound by such terms. If you do not agree to the terms of the End User License Agreement you are not authorized to use, access or copy a Module and you must destroy all copies of the Module and contact NetIQ for further instructions.

Overview The NetIQ Aegis Adapter for VMware vcenter Server (vcenter adapter) allows Aegis to communicate with VMware server and datacenter products to: Create, clone, deploy, delete, and migrate virtual machines (VMs) Manage snapshots, virtual machine disk files, customization specifications, and peripherals Gather information about VMs, resource pools, clusters, and ESX hosts Modify VM and host power states and maintenance modes Modify resource pool memberships The vcenter adapter includes a library of workflow activities that Process Authors can use in the Workflow Designer. For more information about activities or activity libraries, see the Process Authoring Guide for Aegis. Product Requirements The vcenter adapter supports the following VMware Virtual Infrastructure 3 and vsphere products: vcenter Server 2.5 ESX 3-3.5 ESXi 3-3.5 vcenter Server 4 vsphere ESX 4 or 4.1 vsphere ESXi 4 or 4.1 The vcenter adapter requires the following software: Aegis 2.2 Microsoft.NET Framework 3.0 or 3.5 The vcenter adapter requires one of the following operating systems: Windows Server 2003 Standard Service Pack 2 (32-bit) Windows Server 2003 Enterprise Service Pack 2 (32-bit) Windows Server 2008 (32-bit and 64-bit) Windows Server 2008 R2 By default, the vcenter adapter uses TCP port 443 to communicate with vcenter servers. NetIQ Aegis Adapter for VMware vcenter Server 1

Supported Configurations The vcenter adapter can communicate with any combination of servers supporting VMware Virtual Infrastructure 3 and vsphere products. Implementation Overview The following table provides an overview of tasks to configure the vcenter adapter. Steps 1. Configure the minimum rights and privileges for the VMware vcenter account and Aegis service account. 2. Install the vcenter adapter. 3. Install the event renderer on the Web Server computer. 4. Configure the adapter to connect to additional vcenter servers. 5. Verify the installation was successful. For more information, see Ensuring Minimum Rights and Privileges on page 3 Installing the vcenter Adapter on page 3 Installing the Event Renderer on page 5 Configuring Additional vcenter Servers on page 6 Verifying a Successful Installation on page 6 2 Configuration Guide

Ensuring Minimum Rights and Privileges Before installing the vcenter adapter, configure the following minimum rights and privileges for the VMware vcenter account and the Aegis service account. When you install the vcenter adapter, you must specify the credentials for the VMware vcenter account. The VMware vcenter account allows the vcenter adapter to communicate with vcenter and run the activities in a workflow. The VMware vcenter account must be a valid account in vcenter with Administrator privileges and the Administrator role. For more information about the Aegis application credentials, see the Administrator Guide for Aegis. Installing the vcenter Adapter The vcenter adapter allows Aegis to communicate with VMware Virtual Infrastructure and vsphere products, and allows Process Authors to add vcenter activities to an Aegis workflow. You must install the vcenter adapter on the Aegis Server computer. For more information about installing Aegis, see the Administrator Guide for Aegis. If your Aegis Server computer is part of a cluster, you must install the adapter on the active node first, and then on each passive node. Installing on an Active Node in a Cluster or on a Non-clustered Computer These steps guide you through the process of installing the vcenter adapter on one of the following: The active node of a cluster A single non-clustered computer To install the vcenter adapter on the Aegis Server computer: 1. Log on to the Aegis Server computer with a local administrator account. 2. Run the setup program from the folder where you downloaded the vcenter adapter. 3. Click Next. 4. Accept the license agreement, and then click Next. 5. If the Aegis Server and Web Server are on the same computer in your Aegis environment, on the Select Components window, select the following options: Adapter Event Renderer 6. If the Aegis Server and Web Server are on separate computers in your Aegis environment, on the Select Components window, select Adapter. For more information about installing the event renderer on a separate Web Server computer, see Installing the Event Renderer on page 5. 7. On the Logon Information page of the installation wizard, complete the following steps: a. If the Aegis Server computer is not part of a cluster environment, verify the Aegis Server computer name or IP address and the server port. b. If the Aegis Server computer is part of a cluster environment, verify the cluster name or IP address and the server port. NetIQ Aegis Adapter for VMware vcenter Server 3

c. Specify the logon credentials for the Aegis service account. If you do not know the logon credentials for the Aegis service account, contact your Aegis administrator. d. If the Aegis Server computer belongs to a domain, ensure you specify the correct domain. e. Click Next. 8. On the NetIQ vcenter Adapter Connection page of the installation wizard, provide the following information: vcenter. Specify the name of the vcenter server to connect to the adapter. You can configure additional servers using the Aegis Adapter Configuration Utility. For more information about adding vcenter servers, see Configuring Additional vcenter Servers on page 6. Server Name/IP Address. Specify the full server name or address, such as server01.yourdomain.com. If you do not know the name or address, contact your VMware vcenter administrator. Port. Specify the TCP port to communicate with vcenter servers. By default, the vcenter adapter uses port 443. vcenter Login Information. Specify an account with administrative privileges for the specified vcenter server. If you do not know the logon credentials for the vcenter account, contact your VMware vcenter administrator. 9. Click Next. 10. Follow the remaining instructions in the NetIQ Aegis Adapter for VMware vcenter Server Setup wizard, and then click Finish. Installing on a Passive Node in a Cluster These steps guide you through the process of installing the vcenter adapter on a passive node in a cluster. You must install the vcenter adapter on the active node of the cluster first. To install the vcenter adapter on a passive node in a cluster: 1. Log on to the passive Aegis Server node with a local administrator account. 2. Open a command prompt for the folder where you downloaded the vcenter adapter. 3. Type the following command: msiexec /i VMware Aegis Adapter.msi /l*v VMware Aegis Adapter.log SKIPCONFIG="TRUE" 4. Follow the instructions in the setup program until you finish installing the vcenter adapter, and then click Finish. 4 Configuration Guide

Installing the Event Renderer The event renderer for the vcenter adapter provides rendering functionality for the layout of vcenter event details in the Operations Console. If your Web Server computer is part of a cluster, you must install the event renderer on the active node first, and then on each passive node. Installing on an Active Node in a Cluster or on a Non-clustered Computer These steps guide you through the process of installing the event renderer for the vcenter adapter on one of the following: The active node of a cluster A single non-clustered computer To install the event renderer on the Web Server computer: 1. Log on to the Web Server computer with a local administrator account. 2. Run the setup program from the folder where you downloaded the vcenter adapter. 3. Click Next. 4. Accept the license agreement, and then click Next. 5. On the Select Components window, select Event Renderer, and then click Next. 6. Follow the remaining instructions in the NetIQ Aegis Adapter for VMware vcenter Server Setup wizard, and then click Finish. Installing on a Passive Node in a Cluster These steps guide you through the process of installing the event renderer for the vcenter adapter on a passive node in a cluster. You must install the event renderer on the active node of the cluster first. To install the event renderer on a passive node in a cluster: 1. Log on to the passive Web Server node with a local administrator account. 2. Open a command prompt for the folder where you downloaded the vcenter adapter. 3. Type the following command: msiexec /i VMware Aegis Adapter.msi /l*v VMware Aegis Adapter.log SKIPCONFIG="TRUE" 4. Follow the instructions in the setup program until you finish installing the event renderer, and then click Finish. NetIQ Aegis Adapter for VMware vcenter Server 5

Configuring Additional vcenter Servers When the installation is complete, the Aegis Adapter Configuration Utility allows you to configure additional vcenter servers at any time. To configure an additional vcenter server: 1. Log on to the Aegis Server computer with a local administrator account. 2. In the NetIQ program group, click Aegis > NetIQ Aegis Adapter Configuration. 3. In the left pane, click VMware vcenter Server Adapter. 4. On the Edit menu, click New Entry. 5. Provide the appropriate information, and then click Test Connection. 6. If the VMware vcenter account does not have connection privileges, create a valid VMware vcenter account for the vcenter adapter to run on that server. 7. Click Exit. 8. Restart the NetIQ Aegis Namespace Provider service. Verifying a Successful Installation You can verify a successful installation of the vcenter adapter in the following ways: Verifying the data source Verifying the pre-defined triggering event definitions After verifying a successful installation, NetIQ recommends you build a simple workflow with one of the activities in the VMware vcenter Adapter Library. For more information about building workflows, see the Process Authoring Guide for Aegis. Verify the Data Source Aegis connects to the vcenter server you specified during installation as a data source and all related computers as resources. To verify a successful adapter installation: 1. Start the Aegis Configuration Console. For more information about starting the Configuration Console, see the Administrator Guide for Aegis. 2. In the Navigation pane, click Resources. 3. In the left pane, expand Adapter Resource Hierarchies > VMware vcenter Adapter. 4. Expand the vcenter server you specified during installation and ensure its associated data resources, such as datacenter and virtual machine folders, display in the left pane. 5. Click a vcenter resource folder and ensure its associated resources display in the Adapter Resources pane. 6 Configuration Guide

Verify the Pre-Defined Triggering Event Definitions The vcenter adapter setup program installs VMware vcenter event types you can use to create triggers and triggering event definitions. The adapter includes the following pre-defined triggering event definitions: VMware Cluster DRS Standby Events VMware Guest Standby, Reboot, Shutdown Events VMware Host Standby Mode Events VMware Virtual Machine Power State Events VMware VM Deployment Completion To verify successful addition of the triggering event definitions: 1. Start the Aegis Configuration Console. For more information about starting the Configuration Console, see the Administrator Guide for Aegis. 2. In the Navigation pane, click Administration. 3. In the left pane, expand Triggering Event Definitions. 4. Verify the Triggering Event Definitions pane displays the pre-defined VMware triggering event definitions. Understanding Activities The activities in the vcenter adapter library allow you to manage virtual machines and their hosts and to gather data about vcenter servers through Aegis workflows. For detailed information about each activity, see its related Help. For more information about finding objects to include in your workflows, see Finding Objects for Workflows on page 8. Workflow Activities Overview The following table provides a general description of activities you can use to interact with VMware Virtual Infrastructure and vsphere products. For a complete list of activities, see the vcenter adapter library. VMware actions Customization specifications Guest states, power states, and maintenance modes Snapshots Resource attributes Virtual machines VMDK files VMware Tools Allow you to... Import, export, and modify customization specifications you can apply to virtual machines Review and modify the guest states, power states, and maintenance modes for VMs and hosts Create, revert to, and remove snapshots from VMs Gather detailed information about VMs, hosts, clusters, and resource pools so you can manage all aspects of your virtual centers Clone, deploy, delete, migrate, and modify virtual machines for faster functionality Generate lists of virtual machine disk (VMDK) files so you can identify and delete orphaned files to reduce wasted space on your servers Upgrade VMware tools on virtual machines to improve VM performance NetIQ Aegis Adapter for VMware vcenter Server 7

Finding Objects for Workflows In general, you can enter a locator value for parameters in the vcenter adapter activities. If you do not know the locator for an object, such as a virtual machine, you can use the Find Objects activity in your workflow. Finding a VMware object in a large environment takes time and can slow your workflows. The vcenter adapter namespace architecture enables you to quickly locate virtual machines and other VMware objects. For example, the namespace includes a folder named IQVMware_VMUUIDFolder that you can search to ensure an activity quickly finds a server, VM, or VM template. You can also search for virtual machines and ESX host systems using the custom fields in the VMware Virtual Infrastructure and vsphere products. For example, if you want to find virtual machines owned by a specific person, you can add the Find Objects activity to your workflow and search using the IQVMware Custom Field Values attribute. Verifying Workflow Activity Most vcenter adapter activities generate specific output. For example, the Modify Virtual Machine activity generates a locator for the modified virtual machine. However, many VMware Virtual Infrastructure and vsphere actions can take a long time to execute. For example, creating a snapshot in a busy vcenter environment could take up to 10 minutes. As a result, VMware creates tasks for tracking action status and completion in the VMware environment. To indicate the adapter successfully initiated the task in vcenter, the vcenter adapter activities mimic VMware s behavior by creating tasks and returning a task key and task locator as output parameters. The task key and locator do not indicate a task s successful completion. If you want a workflow to wait for a task s completion, place a Wait for Task Completed activity after each vcenter adapter activity that includes a task key or task locator output parameter. When the task completes, the activity allows the workflow to proceed and includes the task s completion status plus any additional success/failure messages. Customizing the Get Object Properties Activity The Get Object Properties activity allows you to retrieve information about the properties of a VMware vcenter object such as a cluster, virtual machine, or datastore. The activity includes a list of commonly reviewed properties for each object. If you want to customize the list by either deleting the original set of properties or adding more properties, you can edit the PropertyDefinition.xml file. To customize the Get Object Properties activity: 1. Open the PropertyDefinition.xml file, which the vcenter adapter usually installs in C:\Program Files\NetIQ\Aegis\IQConnect\bin. 2. In the file, find the Object Class for which you want to add properties. For example, if you want to add properties for an ESX host, find ObjectClass objecttype="hostsystem". 8 Configuration Guide

3. Enter the details for each property you want to add. Property name key valuetype displayname description The VMware data object properties name, such as Annotation The VMware data object properties name plus the VMware object type, such as config.annotation The input attribute of the property, such as xsd:boolean, xsd:integer, xsd:long, or xsd:string A simplified name of the property, such as VM description A brief description of the property, such as provides a brief description of the virtual machine Notes The property name and key you enter must exactly match the data object properties name and type in VMware vcenter. For more information, see the VMware Infrastructure SDK Reference Guide. Although the vcenter adapter does not currently support an array input value type, you can add this type to the XML file. If you enter an array value type, you must also specify the isarray attribute as true and include specific arrayindex attributes, if any. 4. Close and save the file. 5. Before putting the revised file into production, validate the file with a parsing program, such as Microsoft XML Notepad. 6. In the Workflow Designer, close and reopen the Activity Properties window, then browse to the VMware Get Object Properties activity to see the updated properties list. Uninstalling the vcenter Adapter You can uninstall the vcenter adapter using one of the following methods: Run the setup program from the folder where you downloaded the vcenter adapter. In Add/Remove Programs, select NetIQ Aegis Adapter for VMware vcenter Server. Do not attempt to use the Aegis setup program to uninstall the vcenter adapter. If you are uninstalling from a cluster environment, ensure the following: Uninstall the adapter from all passive nodes first. Remove the node from the cluster before you uninstall the adapter. NetIQ Aegis Adapter for VMware vcenter Server 9