Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Include Page
Not_for_SWe
Not_for_SWe

 

Note
iconfalse

Active Directory is always enabled by default, no licensing action is required to turn it on.

Tip

For the latest Microsoft documentation on this step, please refer to Add a Survivable Branch Appliance to Active Directory

Adding the SBA to Active Directory as a Computer

  1. Remote Desktop in to an Active Directory (AD) machine with AD credentials.
  2. Launch the Active Directory Users and Computers snap-in
  3. Do a right click Computers object > select New > select Computer
  4. In the Computer name field, enter the SBA machine name
    (warning)Note: The computer name must be NetBIOS compliant with a maximum length of 15 characters.
  5. In the Users or Group field, click Change > type "RTCUniversalSBATechnicians" in the Enter the object name to select field > click Check Names > hit Click OK.
  6. Hit Click OK in the next screen to add the object as shown below:
Panel
borderStylenone

Caption
0Figure
1Adding SBA

...

to Active Directory

Image Added 

...

 

Setting up the SPN

  1. Remote Desktop in to Active Directory with AD credentials.
  2. Launch the ADSI Edit snap-in
  3. In the left pane, browse down to CN=Computers.
  4. In the right pane, Do a right click CN=<sba machine name> object > select Properties
  5. Scroll down and select the Service Principal Name entry in the list and click Edit button.
  6. In Value to add field, enter HOST/<fqdn of the sba machine name> and hit Click Add button as shown below.
  7. Hit Click OK and exit out from ADSI Edit:
Panel
borderStylenone

Caption
0Figure
1Setting Up SPN

...

Image Added

 

Adding the SBA to the RTCUniversalReadOnlyAdmins Group

  1. Remote Desktop in to AD machine with AD credentials.
  2. Launch the Active Directory Users and Computers snap-in
  3. Browse down to Users object (on the left pane) > do a right click RTCUniversalReadOnlyAdmins group and select Properties
  4. In the Members tab click Add button
  5. In the new popup enter the sba machine name as shown below, hit Click on Check Names > hit Click on OK button
  6. Click OK button to close the properties screen.

 

Panel
borderStylenone

Caption
0Figure
1Adding SBA

...

to RTCUniversalReadOnlyAdmins Group

Image Added 

...

 

Creating the SBA Installer Account in Active Directory

  1. Remote Desktop in to AD machine with AD credentials.
  2. Launch the Active Directory Users and Computers snap-in
  3. Do a right click Users object > select New > select User
  4. Create an SBA installer account as shown below:

    Panel
    borderStylenone

    Caption
    0Figure
    1Create SBA Installer Account

    Image Added

     

    Image Removed

     

  5. In the newly created user's properties, add a membership to RTCUniversalSBATechnicians groups as shown below:

    Panel
    borderStylenone

    Caption
    0Figure
    1Add Membership

    Image Removed

    Image Added