RAS Enrollment Server configurationRAS Enrollment Server communicates with Microsoft Certificate Authority (CA) to request, enroll, and manage digital certificates on behalf of a user for SSO authentication in the Parallels RAS environment. Note: For security reasons, RAS Enrollment Server should be installed on a secure, dedicated server similar to an Active Directory Domain Controller or Certificate Authority with no other Parallels RAS components installed. Setup and configure RAS Enrollment Server You can remotely install the RAS Enrollment Server Agent on a specified server from the RAS Console. You can also install the Agent by running the standard RAS installer on the desired server. To remotely install the RAS Enrollment Server:
To install the RAS Enrollment Server using the Parallels RAS installer:
Obtain and copy the registration key If you perform a manual installation using the RAS installer, it is necessary to place a registration key file on the Enrollment Server host. This step is not required if the RAS Enrollment Server Agent was remotely deployed from the RAS Console. First, you need to obtain the registration key file as follows:
Once you have the registration.crt file, copy it to the following folder on the server where you have the RAS Enrollment Server installed, by default in the following path:
Note: It is mandatory for the registration key file to be named "registration.crt". Configure AD integration After you added the RAS Enrollment Server in the RAS Console, you need to configure AD integration for it as follows:
Using computer management tools You can perform standard computer management tasks on a RAS Enrollment Server host right from the RAS Console. These include Remote Desktop Connection, PowerShell, Computer Management, Service Management, Event Viewer, IPconfig, Reboot, and others. To access the Tools menu, click Tasks > Tools and choose a desired tool. For requirements and usage information, see Computer management tools. |
||||
|