Appendix A: Administration Features
166
ESXi Access Requirements
You can access your VMW Viewer interfaces in the Navigator using the VMware
“ESXi Embedded Host Client.” The ESXi server must support the ESXi Embedded
Host Client and must be version 6.0 or higher. Upon launching, the Remote
Console of the virtual machine is shown. Single sign-on is not supported, so you
must enter credentials each time you launch the interface.
To launch ESXi access, you must have the ESXi Access privilege
CC-SG Authentication Fallback
CC-SG has a fall-back authentication mechanism. CC-SG maintains an ordered
list of authentication methods and if one authentication method fails CC-SG
tries authentication with the next mechanism in the list.
For the best results with CC-SG integration, make sure users have the same
access privileges in each authentication server that may be used.
Trusted Certificates
You must install trusted certificates on the User Station in these scenarios:
•
A valid CA certificate is required to establish the LDAP connection. Then
you must:
a.
Consult your LDAP server administrator to get the CA certificate file.
b.
Install this CA certificate onto the User Station.
•
When FIPS mode is enabled, all encrypted connections to KX III KVM
switches are processed using the FIPS accredited cryptographic code and
the authenticity of those KVM switches is checked via their certificate
chain. When Check KX Device Certificate is enabled, authenticity of KVM
switches is checked via their certificate chain. You must install the trusted
device- or root-certificate of each KX III KVM switch on the User Station, or
the connection to the KVM switches fails.
•
When CC-SG integration in enabled, and FIPS mode or Check KX Device
Certificate is enabled as well, you must install the CC-SG certificate. Also, if
the CC-SG and the KX3s managed by the CC-SG have certificates signed by
different CAs, then the certificates from both the CC-SG and the KX3
devices should be added to the KX User Station , or the connection fails. A
connection error message appears. See
Certificate Failure Messages
(on
page 168). Certificates using RSA or DSA algorithm with key-sizes smaller
than 1024 bit are not accepted by Dominion User Station.
For more details about creating certificates that are accepted, see Certificate
Requirements.
To install the CA or KX III certificate(s) on the User Station:
1.
Plug a USB drive containing the appropriate certificate file into the User
Station.
Summary of Contents for Raritan Dominion User Station
Page 10: ......
Page 63: ...Appendix A Managing Targets and Access Methods 53 VNC Access Settings...
Page 64: ...Appendix A Managing Targets and Access Methods 54 SSH Access Settings...
Page 65: ...Appendix A Managing Targets and Access Methods 55 WEB Access Settings...
Page 159: ...Appendix A Administration Features 149 5 Enter the bind credentials in the Bind section...
Page 204: ...Appendix A Administration Features 194 9 Click Save...
Page 211: ...Appendix A Maintenance Features 201 6 Click OK in the confirmation dialog...
Page 269: ...Appendix D API 259...
Page 280: ......