September 2012
Intermediate to advanced
1680 pages
88h 3m
English
Servers in an organization’s DMZ are usually not domain members and, therefore, cannot do automatic mutual authentication with the OpsMgr server. However, these servers are the most exposed in the organization and, thus, a critical asset to be monitored. Thankfully, there is a well-defined process for using certificates to handle the mutual authentication. Certificates on both the management servers and the agents are used to mutually authenticate their communications.
The certificates used for mutual authentication must
• Have the Name field match the computer name in the Computer Properties
• Be configured with server (1.3.6.1.5.5.7.3.1) and client (1.3.6.1.5.5.7.3.2) OIDs
• Be marked as Exportable
• Have ...
Read now
Unlock full access