Friday, December 20, 2013

Lab # 5: HQ Zone and Computer Roles Creation

In this lab
  • We will use Centrify Access Manager to create the HQ Zone
  • We will define the Zone UNIX identity defaults
  • We will create the Computer Roles for Database and Web Servers

Create the HQ Zone
  1. Log on to CLIENT1 with Jessie (UNIX administrator)
  2. Open the Centrify Access Manager (on the desktop)
  3. On the Connect to forest window, click OK.
  4. On the Access Manager console, in the left pane, expand the Centrify Access Manager hive, right-click on Zones and select Create New Zone.
  5. In the zone name, type HQ, then click next.
  6. In the Agent Compatibility page we will select Hierarchical Zone.
    This blog will never use Classic Zones, click Next
  7. In the Management Model window, select Standard Zone, click next and then finish.
 Set up the UNIX Identity zone defaults
  1. On the left pane, expand zones, and expand the HQ zone.
  2. Right click the HQ zone, select properties and go to the User Defaults tab.
  3. On the UID, click the drop-down box and select AutoPrivate group, then go to the Group Defaults tab
  4. On the GID, click the drop-down box and select Generate GID from SID
  5. Click OK
Note:  These are just the zone defaults,  UNIX identities can always be overridden.

Create the Computer Roles for Database and Web Servers
  1. On the left pane, expand zones, and expand the HQ zone and expand the Authorization node.
  2. Right click the Computer Roles section and click Create Computer Role
  3. In name, type Database Servers
  4. Click the drop-down arrow on computers group, and click <...>
  5. In the Find Objects window, type UNIX and click Find Now.
  6. Double click the UNIX Database Servers group and then press OK
    Repeat the same process for the Web Servers and use the UNX Web Servers group. 

No comments:

Post a Comment