ESX Virtualization

VMware ESXi, vSphere, VMware Backup, Hyper-V... how-to, videos....

Nakivo Backup and Replication - #1 Backup solution for Virtual, physical, cloud, NAS and SaaS

Menu
  • Certification
      • VCP-DCV vSphere 8
          • vcp2024-125.
        • Close
    • Close
  • VMware
    • Configuration Maximums
    • vSphere
      • vSphere 8.0
      • vSphere 7.0
      • vSphere 6.7
      • vSphere 6.5
      • vSphere 6.0
      • Close
    • VMworld
      • VMware EXPLORE 2024
      • VMware EXPLORE 2023
      • VMware EXPLORE 2022
      • VMworld 2019
      • VMworld 2018
      • VMworld 2017
      • VMworld 2016
      • VMworld 2015
      • VMworld 2014
      • VMworld 2013
      • VMworld 2012
      • VMworld 2011
      • Close
    • Close
  • Microsoft
    • Windows Server 2012
    • Windows Server 2016
    • Windows Server 2019
    • Close
  • Categories
    • Tips – VMware, Microsoft and General IT tips and definitions, What is this?, How this works?
    • Server Virtualization – VMware ESXi, ESXi Free Hypervizor, VMware vSphere Server Virtualization, VMware Cloud and Datacenter Virtualization
    • Backup – Virtualization Backup Solutions, VMware vSphere Backup and ESXi backup solutions.
    • Desktop Virtualization – Desktop Virtualization, VMware Workstation, VMware Fusion, VMware Horizon View, tips and tutorials
    • How To – ESXi Tutorials, IT and virtualization tutorials, VMware ESXi 4.x, ESXi 5.x and VMware vSphere. VMware Workstation and other IT tutorials.
    • Free – Free virtualization utilities, ESXi Free, Monitoring and free backup utilities for ESXi and Hyper-V. Free IT tools.
    • Videos – VMware Virtualization Videos, VMware ESXi Videos, ESXi 4.x, ESXi 5.x tips and videos.
    • Home Lab
    • Reviews – Virtualization Software and reviews, Disaster and backup recovery software reviews. Virtual infrastructure monitoring software review.
    • Close
  • Partners
    • NAKIVO
    • StarWind
    • Zerto
    • Xorux
    • Close
  • This Web
    • News
    • ESXi Lab
    • About
    • Advertise
    • Archives
    • Disclaimer
    • PDFs and Books
    • Close
  • Free
  • Privacy policy

VMware SSO Install – Single Sign On Server Installation Options

By Vladan SEGET | Last Updated: May 9, 2013

Shares

VMware SSO install, when done wrong or when architected the wrong way, can put your infrastructure into a fragile state where SSO can became the single point of failure (SPOF). Before introduction of SSO in vSphere 5.1, there was a vCenter considerations when it comes to resiliency and protection. With the introduction SSO it's like an additional key component to think of when it comes to resiliency and protection. And even if it greatly simplifies the user experience, it adds additional complexity to vSphere deployments. The SSO works with vSphere 5.1 and higher versions of vSphere. It's automatically installed within the vCSA.

VMware SSO Install

The SSO server is responsible for interoperability between vSphere solutions. SSO will support requests to authenticate for vCenter server, vCloud Director, vCenter orchestrator and others. So multiple authentication services gets consolidates into single login. SSO provides tokens to hand back and forth between the different components of vSphere infrastructure allowing you to login only once. This is the principal benefit for the end user, but can become a headache for the IT admin.

In my post on creating an SQL 2012 database for SSO server, where I prepared also vCenter and VUM databases, created users, roles and privileges before installing all the vCenter components on Windows Server 2012 (supported since vSphere 5.1 U1), I have installed a basic SSO type of installation.  With no particular resiliency. It's certainly crucial to have a solid backup solution for that SQL server, as well as for vCenter server.

VMware SSO Install.

VMware SSO Install

Concerning the VMware SSO install, there are three options, and you can do a basic or more resilient (clustered), or installation for other types of architectures:

  • Basic – single instance of SSO server (a standalone install). Multiple vCenters can use this SSO server. In case of failure – no vCenter access, but ESXi hosts continue to function.
  • HA cluster – two or more instances of SSO server are installed in cluster. Single Primary and one or more secondaries. Single DB is used by multiple SSO nodes. In case one node fail, the other nodes continue to provide SSO functions.
  • Multisite – For different geographically located datacenters (and vCenter servers), the SSO server instance is installed on each geographically located site. In single or clustered mode. If there is a requirement to administer all those datacenters through single vSphere Web client, than the vCenter servers instances must be configured in Linked Mode. More details. See also the Multisite Single Sign-On deployment best practices.

The identity sources for SSO can be various : Active directory, Open LDAP or local OS users. You can add an additional identity source after installation by going through the configuration options through vSphere Web client only by going to:

Home > Administration> Single Sign On And Discovery > Configuration

There you can add an additional identity source (in addition of those already present). But you don't have to use AD or Open Ldap. It is  not a hard requirement, but usually you already have some kind of authentication services implemented in your company. So hooking up SSO server into it is just logical. The SSO Server has its own internal user store. It's possible to assign vCenter Server privileges to users and groups from this internal datastore as well.

Further good read:

  • vCenter Single Sign-On – Part 1: What is vCenter Single Sign-On?
  • vCenter Single Sign-On – Part 3: Availability
  • vCenter Single Sing-On – part 2: Deployment options
  • vCenter Single SIgn-On – Part 4: Pre Install Requirements
  • Troubleshooting VMware Single Sign-On configuration and installation issues in a Windows server
  • Configuring vCenter Single Sign On for High Availability
Shares
Vote !

| Filed Under: Server Virtualization

About Vladan SEGET

This website is maintained by Vladan SEGET. Vladan is as an Independent consultant, professional blogger, vExpert x16, Veeam Vanguard x9, VCAP-DCA/DCD, ESX Virtualization site has started as a simple bookmarking site, but quickly found a large following of readers and subscribers.

Connect on: Facebook. Feel free to network via Twitter @vladan.

Comments

  1. Single sign on server says

    September 7, 2013 at 10:50 am

    This is really useful tips for everyone who can use the SSO. In vSphere versions before vSphere 5.1, vCenter Server was installed in a single operation that also silently installed the Inventory Service on the same host machine.

Private Sponsors

Featured

  • Thinking about HCI? G2, an independent tech solutions peer review platform, has published its Winter 2023 Reports on Hyperconverged Infrastructure (HCI) Solutions.
  • Zerto: One Platform for Disaster Recovery, Backup & Cloud Mobility: Try FREE Hands-On Labs Today!
Click to Become a Sponsor

Most Recent

  • Veeam Backup & Replication v13 Beta: A Game-Changer with Linux
  • What is Veeam Data Cloud Vault and how it can help SMBs
  • Nakivo Backup and Replication – Malware Scan Feature
  • Zerto 10 U7 released with VMware NSX 4.2 Support
  • XorMon NG 1.9.0 Infrastructure Monitoring – now also with Veeam Backup Support
  • Heartbeat vs Node Majority StarWind VSAN Failover Strategy
  • Vulnerability in your VMs – VMware Tools Update
  • FREE version of StarWind VSAN vs Trial of Full version
  • Commvault’s Innovations at RSA Conference 2025 San Francisco
  • VMware ESXi FREE is FREE again!

Get new posts by email:

 

 

 

 

Support us on Ko-Fi

 

 

Buy Me a Coffee at ko-fi.com

Sponsors

Free Trials

  • DC Scope for VMware vSphere – optimization, capacity planning, and cost management. Download FREE Trial Here.
  • Augmented Inline Deduplication, Altaro VM Backup v9 For #VMware and #Hyper-V – Grab your copy now download TRIAL.

VMware Engineer Jobs

VMware Engineer Jobs

YouTube

…

Find us on Facebook

ESX Virtualization

…

Copyright © 2025 ·Dynamik-Gen · Genesis Framework · Log in