For Active Directory Installation Guide

Similar documents
Installation Guide. Novell Storage Manager for Active Directory. Novell Storage Manager for Active Directory Installation Guide

Administration Guide. Novell Storage Manager for Active Directory. Novell Storage Manager for Active Directory Administration Guide

How To Manage Storage With Novell Storage Manager 3.X For Active Directory

Server Installation Guide ZENworks Patch Management 6.4 SP2

Administration Quick Start

ATT8367-Novell GroupWise 2014 and the Directory Labs

Novell ZENworks 10 Configuration Management SP3

High Availability Configuration

Mobile App Quick Start

Interworks. Interworks Cloud Platform Installation Guide

System Planning, Deployment, and Best Practices Guide

NetIQ Sentinel Quick Start Guide

Configuring File Servers and Active Directory with Domain Services for Windows-Lab

Server Installation ZENworks Mobile Management 2.7.x August 2013

Generating an Apple Push Notification Service Certificate

Software Distribution Reference

Installation and Configuration Guide

SSL Management Reference

Novell Open Workgroup Suite Small Business Edition Helpdesk

Remote Management Reference

Audit Management Reference

4cast Client Specification and Installation

User Guide Novell iprint 1.1 March 2015

Automating client deployment

Remote Management Reference

Dell Statistica Statistica Enterprise Installation Instructions

Asset Inventory Reference

NetIQ Operations Center 5: The Best IT Management Tool in the World Lab

Certificate Management

Administration Guide Messenger 2.2 July 30, 2013

Novell SUSE Linux Enterprise Virtual Machine Driver Pack

Secure Agent Quick Start for Windows

Full Disk Encryption Agent Reference

Acronis Backup & Recovery 11.5 Quick Start Guide

Adobe Acrobat 9 Deployment on Microsoft Windows Group Policy and the Active Directory service

Jobs Guide Identity Manager February 10, 2012

Administration Guide Novell Filr May 2014

Novell Identity Manager

Android App User Guide

ZENworks Adaptive Agent Reference

2 Configuring GroupWise Mobility Service to Support Microsoft Outlook Clients

Sophos Anti-Virus for NetApp Storage Systems startup guide

Universal Management Service 2015

Password Management Guide

Novell Identity Manager Resource Kit

ZENworks Mobile Management 3.0.x Deployment Quick Start

Full Disk Encryption Pre-Boot Authentication Reference

NOVELL ZENWORKS ENDPOINT SECURITY MANAGEMENT

Database Maintenance ZENworks Mobile Management 2.7.x August 2013

DameWare Server. Administrator Guide

Novell Access Manager

User Source and Authentication Reference

Version 3.8. Installation Guide

Administration Guide Messenger 3.0 February 2015

Patch Management Reference

VERITAS Backup Exec TM 10.0 for Windows Servers

Distributing SMS v2.0

Setting Up a Unisphere Management Station for the VNX Series P/N Revision A01 January 5, 2010

DigitalPersona Pro Server for Active Directory v4.x Quick Start Installation Guide

Deploying BitDefender Client Security and BitDefender Windows Server Solutions

ACTIVE DIRECTORY DEPLOYMENT

User Document. Adobe Acrobat 7.0 for Microsoft Windows Group Policy Objects and Active Directory

Administration Guide Modular Authentication Services (NMAS) April 2013

Symantec AntiVirus Corporate Edition Patch Update

Deploying BitDefender Client Security and BitDefender Windows Server Solutions

Enterprise Vault Installing and Configuring

Sophos Anti-Virus for NetApp Storage Systems user guide. Product version: 3.0

Database Management Reference

Web Application User Guide

Quick Start Guide for VMware and Windows 7

Virtual Office Remote Installation Guide

Promap V4 ActiveX MSI File

QUANTIFY INSTALLATION GUIDE

2 Installing Privileged User Manager 2.3

Step-by-Step Guide for Microsoft Advanced Group Policy Management 4.0

Migration Tool Administration Guide

Out-of-Band Management Reference

Patch Management Reference

Project management integrated into Outlook

Novell Identity Manager

How To Set Up Safetica Insight 9 (Safetica) For A Safetrica Management Service (Sms) For An Ipad Or Ipad (Smb) (Sbc) (For A Safetaica) (

Keynote DeviceAnywhere/HP Application Lifecycle Management (HP ALM/QC) Integration Guide. TCE Automation 5.2

Dell Statistica Document Management System (SDMS) Installation Instructions

Windows Client User Guide

Client User Guide GroupWise 2014 April 2014

HyperFS PC Client Tools

Nexio Connectus with Nexio G-Scribe

Patch Management Reference

Symantec Backup Exec TM 11d for Windows Servers. Quick Installation Guide

Important Notes for WinConnect Server VS Software Installation:

2 Downloading Access Manager 3.1 SP4 IR1

Project management integrated into Outlook

Secret Server Installation Windows 8 / 8.1 and Windows Server 2012 / R2

Client User Guide GroupWise 2014 R2 November 2015

Installation Notes for Outpost Network Security (ONS) version 3.2

Using Group Policies to Install AutoCAD. CMMU 5405 Nate Bartley 9/22/2005

Transcription:

For Active Directory Installation Guide Version 2.5.2 April 2010 Copyright 2010

Legal Notices makes no representations or warranties with respect to the contents or use of this documentation, and specifically disclaims any express or implied warranties of merchantability or fitness for any particular purpose. Further, reserves the right to revise this publication and to make changes to its content, at any time, without obligation to notify any person or entity of such revisions or changes. Further, makes no representations or warranties with respect to any software, and specifically disclaims any express or implied warranties of merchantability or fitness for any particular purpose. Further, reserves the right to make changes to any and all parts of the software at any time, without obligation to notify any person or entity of such revisions or changes. See the Software EULA for full license and warranty information with regard to the Software. Any products or technical information provided under this Agreement may be subject to U.S. export controls and the trade laws of other countries. You agree to comply with all export control regulations and to obtain any required licenses or classification to export, re-export, or import deliverables. You agree not to export or re-export to entities on the current U.S. export exclusion lists or to any embargoed or terrorist countries as specified in the U.S. export laws. You agree to not use deliverables for prohibited nuclear, missile, or chemical biological weaponry end uses. assumes no responsibility for your failure to obtain any necessary export approvals. Copyright 2010. All Rights Reserved. No part of this publication may be reproduced, photocopied, or transmitted in any fashion with out the express written consent of the publisher. Document Version: 1.2 Trademarks Novell Storage Manager is a trademark of. Third-Party Trademarks Windows and the Windows logo are trademarks of Microsoft Corporation. Novell is a registered trademark of Novell, Inc. in the United States and other countries. All other third-party trademarks are property of their respective owners. 2

Table of Contents 1 Introduction 4 1.1 Conventions Used 4 1.2 Overview 5 1.3 Components 6 1.3.1 Engine Service 6 1.3.2 Agent Service 6 1.3.3 Event Service 6 1.3.4 NSM Administration Interface 6 2 Installation 2.1 Engine Service Installation 7 7 2.2 Administration Interface Installation 13 2.3 Event Service Installation 19 2.4 Agent Service Installation 23 2.5 Agent installation for Cluster and NAS Devices 29 2.5.1 Establishing Share Permissions on the Active Directory Cluster or NAS Virtual File Servers 29 2.5.2 Add Local Security to the Active Directory Managed Cluster and NAS devices 30 3

Novell Storage Manager for Active Directory 2.5.2 Installation Guide 1 Introduction 1.1 Conventions Used Bold Words in bold indicate key terms or items of interest. Italics Words in italics indicate names, such as the name of a menu item, selectable option, or a screen name. Cod e Sections of code such as actual text from a configuration file, message structure, or other text representing actual parameters within a file. Best practice. Although the information contained here may not be appropriate in all cases, it is the general rule of thumb. General information. Content here is generally helpful in better understanding the operation or design of part of the product. Warning or notice. This content should be carefully read and understood to prevent problems with configuration or operation of the product. 4

Chapter 1 Introduction 1.2 Overview Introducing Novell Storage Manager for AD v2.5.2 Novell Storage Manager introduces management and structure to an unmanaged and unstructured network storage system and, in the process, automates the full life-cycle management of user s storage. Leveraging network directory services (commonly referred to as Active Directory ), Novell Storage Manager automates a comprehensive set of storage management tasks based on events, identities and policies. In the process, Novell Storage Manager can assure storage compliance while saving time and money. Novell Storage Manager delivers secure, automated and flexible management for personal storage, and saves a lot of time. Life-cycle Management of Storage Novell Storage Manager automates the full life-cycle of user storage through policies. In addition to creating user storage, Novell Storage Manager automates the management of: Rights: Novell Storage Manager ensures that file system rights are applied consistently for users based on their roles in the enterprise. Renames: When a user is renamed in Microsoft s Active Directory, Novell Storage Manager automatically renames the associated home folder and updates the home folder attribute in the directory, so the user can log in and access his or her storage. User Moves: A common manual process for IT departments within companies with multiple locations is moving an employee s storage when they transfer to a new city. Novell Storage Manager completely automates this process. User Deletes: When an employee leaves your enterprise, you can have Novell Storage Manager automatically vault the storage, defer the cleanup of the storage for a set number of days. Templates: When provisioning user HOME directories, Novell Storage Manager can be configured to copy Template folders or files. 5

Novell Storage Manager for Active Directory 2.5.2 Installation Guide 1.3 Components 1.3.1 Engine Service The Engine component acts on the events that the Event service subsystem sends. These events include CREATE, MOVE, RENAME and DELETE. There is only one instance of the Engine service per forest. The Engine runs as a native service on Windows. The Engine service can be installed on a Domain Controller or Member Server. 1.3.2 Agent Service The Agent service gets installed at least one time, and the first installation is on the same server as the Engine service component. This first instance of the Agent is know as the "Default Agent" and is mandatory since the Engine must have an Agent present to delegate much of the low-level storage management work to. Additional installations of the Agent are then performed so that the Agent runs on servers that are hosting storage that is to be managed by NSM. Like the Engine, the Agent installs & runs as a native service on Windows. 1.3.3 Event Service The Event Service component is installed a single time per Domain in AD. It can run on a member server or a domain controller. If installed on a domain controller, the Event Service will always monitor the local server for changes of interest that occur to objects in the AD domain. If installed on a member server, the Event Server will identify the closest available domain controller and monitor it for changes of interest that occur to objects in the AD domain. The Event Server installs & runs as a native service on Windows. 1.3.4 NSM Administration Interface The NSM Administration Interface is a.net 3.5 + GUI application. It can be installed on the same server as the Engine as well as on one or more domain member workstations. The NSM Administration Interface is used to interact with the Engine for purposes of Engine and policy configuration, status monitoring, command and control of Novell Storage Manager. 6

Chapter 2 Installation 2 Installation 2.1 Engine Service Installation Novell Storage Manager Engine service requirements: Windows Server 2003 32bit/64bit SP2 or Windows Server 2008 SP1 Forest Functional Level 2003 Native* Mode or later.net 3.5 Framework installed for the Novell Storage Manager Admin Interface *Must be Native mode and NOT mixed mode. To begin the installation of Novell Storage Manager, copy the file NSM-2.5.2ActiveDirectory.exe to the server you wish to host the Engine service and Default Agent service. You can download the latest version at http://www.storagemgr.com/nsm/. Warning: If you are installing this on a Windows 2008 server, be sure to turn off User Account Control (UAC) before performing the installation. The fastest way to turn off UAC is to open Control Panel and do a search for UAC. 7

Novell Storage Manager for Active Directory 2.5.2 Installation Guide 1. Click NEXT 2. Click NEXT 3. Click NEXT 8

Chapter 2 Installation 4. Click NEXT 5. Click INSTALL 9

Novell Storage Manager for Active Directory 2.5.2 Installation Guide 6. Click NEXT 7. Enter Engine IP Address (Default 0.0.0.0 ALL Interfaces) 8. Enter Port: 3009 (Default) 9. Click NEXT 10

Chapter 2 Installation Additional Components 32-bit or 64-bit (depending on OS) 10. Check each box to install the Event Monitor Service and Administration Client 11. Click NEXT Novell's best practice is to install the Admin Interface on a local workstation for better performance. 11

Novell Storage Manager for Active Directory 2.5.2 Installation Guide 12. Click Done This completes the installation of the Novell Storage Manager core services components. In order to start managing USER storage based on policy, you need to complete the following tasks: Run the Setup Wizard from the NSMAdmin administration client. Configure the Event Monitor service. Verify permissions and rights for managed shares and folders. Perform Consistency Checks to analyze pre-existing storage. Create and associate storage policies to objects in the directory. Perform storage Management Actions to get pre-existing storage managed by policy. Please reference the NSM 2.5.2 for AD Administrator s Guide for details. 12

Chapter 2 Installation 2.2 Administration Interface Installation Novell Storage Manager is managed using a Windows executable provided with the install. A shortcut to the administration interface labeled NSMAdmin is available on the desktop of the Engine server. 's best practice is to install the Novell Storage Manager Administration interface locally for better performance. Novell Storage Manager "NSMAdmin.exe" Requirements: Windows 32-bit or 64-bit platforms (Windows 2000 sp4, Windows XP sp2, Windows Server 2003 32bit/64bit sp2 or Windows Server 2008).NET 3.5 Framework installed For details on how to obtain, install, and configure the.net 3.5 Framework, see http://www.microsoft.com/downloads/en/results.aspx? freetext=.net+framework+3.5&displaylang=en&stype=s_basic. To check which version of the.net Framework is currently installed, see http://support.microsoft.com/kb/318785/. Configure Novell Storage Manager Once you have met the requirements for running the management interface, you can now proceed to launch the management interface and configure NSM. 1. Launch NSMAdmin executable from the desktop shortcut 13

Novell Storage Manager for Active Directory 2.5.2 Installation Guide 2. Input Engine: <Your Servers IP Address or DNS Name> 3. Input Port: 3009 (default) 4. Input User Name: Domain\administrator (An account with Domain Administration privileges) 5. Input Password: xxxxxxx 6. Click Login 7. Click Next 14

Chapter 2 Installation 8. Authenticate 9. Click Next 10.Browse for your LICENSE.DAT file If you don't have a license file you can click on the Get a License button or go to the following site: http://www.storagemgr.com/nsm/ 11. Click Next 15

Novell Storage Manager for Active Directory 2.5.2 Installation Guide 12. Enter Proxy Service Account: NSMProxy & Proxy Security Group: NSMProxyRights 13.Click Next 14.Enter NSM Administrator Group (This group allows users to administer NSM Default Group Name: NSMAdmins) 15.Click Next 16

Chapter 2 Installation 16.Enter Engine Address <Your Servers IP Address or DNS Name> 17.Click Next 18.Click Next 17

Novell Storage Manager for Active Directory 2.5.2 Installation Guide 19.Wait for the Engine to initialize... NSMAdmin Main Screen 18

Chapter 2 Installation 2.3 Event Service Installation You will now be stepped through setting up the Event Monitor Service. The Event Monitor Service is responsible for listening to, collecting and sending specific Active Directory events to the Engine. In NSM 2.5 for Active Directory and greater, there is only 1 Event Monitor Service per Domain. It can be located anywhere but these instructions will install it where you installed the Engine Service and Default Agent. Configure Event Monitor Service Once you have Installed and configured the NSMAdmin utility, you will need to configure an Event Monitor Service. To configure the Event Monitor Service, you will need to launch the NSMEventConfig utility from the START menu: START -> All Programs -> -> Novell Storage Manager -> NSMEventConfig 19

Novell Storage Manager for Active Directory 2.5.2 Installation Guide 1. Input Domain (This is the DOMAIN where the ENGINE was installed) 2. Input Proxy Account: (Default:NSMProxy) 3. Input Proxy Rights Group: (Default:NSMProxyRights) 4. Click Next 5. Input the Engine Address <Your Engine server s IP Address or DNS Name> 6. Input Port: 3009 (default) 7. Click Next 20

Chapter 2 Installation Make sure Install Service and Start Service are checked 8. Click Next Verify Event Monitor Service is running 9. Click Close 21

Novell Storage Manager for Active Directory 2.5.2 Installation Guide NSMAdmin Main Screen From the NSMAdmin Main Screen select Config Event Servers Host Server and click Add. (plus) icon, then select the You now have installed the NSM Engine Service, Default Agent Service and Event Monitor Service. You can now begin automating the management of your data! Note: For best practices on deploying Event Monitor Services and Agent Services in your environment, please reference the NSM 2.5.2 for AD Administrator's Guide web page at http://www.storagemgr.com/nsm/ In order to start managing existing and new user storage based on storage policies, you need to complete the following steps: A. Perform Consistency Checks to analyze preexisting storage B. Create and associate storage policies to objects in the directory C. Perform Storage Management Actions to get preexisting storage managed by policy 22

Chapter 2 Installation 2.4 Agent Service Installation During the Engine service installation a default Agent was installed automatically. To manage storage on other servers you must install an Agent service. To successful ensure management of shares on other servers do the following: Share the Components folder on the server where the Engine installation was performed. This will prevent you from having to copy the AGENT msi to every server you have managed storage on. The DOS path to the Components directory is located at: C:\Novell\Novell Storage Manager\Engine\Components Go to the remote server(s) you want to manage storage on and explicitly assign the domain\nsmproxyrights group Full Control for Permissions and Full Control for Security (NTFS) rights to the share. You will need to authenticate to the remote server as a Domain Admin or equivalent. Do not login as a local administrator. Launch the Agent installation from the shared Components directory by putting the UNC path to the share: Do a START RUN (Windows XP) then type the following in the Open field \\server\components\nsmagent. The filename will be nsmagent-2.5.232bit.msi. For Vista users click on the START button, then put the UNC in the Start Search field. 23

Novell Storage Manager for Active Directory 2.5.2 Installation Guide 1. Click Next 2. Accept End Users License Agreement 3. Click Next 24

Chapter 2 Installation 4. Click Next 5. Click Install 25

Novell Storage Manager for Active Directory 2.5.2 Installation Guide 6. Check Launch Agent Configuration Tool 7. Click Finish 8. Input Domain (This is the DOMAIN where the ENGINE was installed) 9. Input Proxy Account: (Default NSMProxy) 10. Input Proxy Rights Group: (Default NSMProxyRights) Click Next 26

Chapter 2 Installation 11. Input IP address of Engine server 12. Input Port: (Default 3009) 13. Click Next 14. Select IP address Agent service will be listening on: (Default 0.0.0.0) 15. Input Port: (Default 3011) 16. Click Next 27

Novell Storage Manager for Active Directory 2.5.2 Installation Guide 17. Check Start Service 18. Click Next Verify Agent service is running 19. Click Close 28

Chapter 2 Installation 2.5 Agent installation for Cluster and NAS Devices Overview: One important function of installing the NSM Agent is that it sets the appropriate Local Security Authority Privileges, or LSA Privs. Since cluster and NAS devices have virtual servers you cannot install a physical agent on them. Because of this, the LSA Privs are not set. In addition, you will need to allow another server with a real agent installed to proxy for the cluster and NAS virtual servers. The default agent that is installed on the same server as the engine, will automatically proxy for any servers that don't have a real agent installed on them. In order to set the appropriate LSA Privs and Share permissions on a virtual server, you will need to do the following: 2.5.1 Establishing Share Permissions on the Active Directory Cluster or NAS Virtual File Servers 1. At the Windows server where Active Directory is installed, click Start > Administrative Tools > Active Directory Users and Computers. This brings up the Active Directory Users and Computers page. 2. In the left pane, locate the container where the virtual server is so that it appears listed in the right pane. 3. In the right pane, right-click the virtual server and select Manage. This brings up the Computer Management page. 4. In the left pane, navigate to the Shares folder so that the shares on the virtual server appear in the right pane. 5. On a share you want NSM to manage, right-click and select Properties. This brings up the Properties dialog box. 6. Click the Share Permissions tab and click Add. This brings up the Select Users dialog box. 7. In the Enter the objects to select field, do the following: Enter NSMProxyRights and click Enter. The Properties dialog is updated with NSMProxyRights listed in the Group and user names. 8. Highlight NSMProxyRights and select the Allow Full Control permissions. 9. Click the Security tab, and click Edit. This brings up the Permissions dialog box. 10. Click Add. This brings up the Select Users dialog box. 11. In the Enter the objects to select field, enter NSMProxyRights and click Enter. The Properties dialog is updated with the NSMProxyRights listed in the Group and user 29

Novell Storage Manager for Active Directory 2.5.2 Installation Guide names. 12. Highlight NSMProxyRights and select the Allow Full Control permission. 13. Close the Properties dialog box to save the changes. 2.5.2 Add Local Security to the Active Directory Managed Cluster and NAS devices Note: You must be logged in as a Domain Administrator to perform this procedure. 1. At any domain controller or any computer where the Admin or Remote Server Administration Tools are installed, click Start > Administrative Tools > Active Directory Users and Computers. This brings up the Active Directory Users and Computers page. 2. In the left pane, locate the container where the virtual server is so that it appears listed in the right pane. 3. In the right pane, right-click the virtual server and select Manage. This brings up the Computer Management page. 4. In the left window pane, expand Local Users and Groups. 5. Select Groups. 6. On the right pane double-click Administrators. This brings up the Administrators Properties dialog box. 7. Click the Add button. This brings up the Select Users, Computers, or Groups dialog box. 8. In the Enter the object names to select field type the following: domain_name\nsmproxyrights 30

Chapter 2 Installation 9. Click OK to save the setting. Once you have installed an Agent to all member servers you have storage to manage, you will need to add them to the Agent Server list via the NSMAdmin Utility. Launch NSMAdmin, click on the Config tab, then select Agent Servers. You will then see a list of configured Agent Servers. To add additional Agent Servers, click the button to see a list of Eligible Agent Servers. Highlight the Agent Server(s) you wish to add and click Add. The Agent(s) will then start heart-beating into the Engine. Repeat this step for all additional servers you with to manage data on via Novell Storage Manager. 31