Using Certificates with ACS in Operations Manager 2007

Applies To: Operations Manager 2007 R2, Operations Manager 2007 SP1

When the Audit Collection Service (ACS) Forwarder is located in a domain separate from the domain where the ACS Collector is located, and no two-way trust exists between the two domains, certificates must be used so that authentication can take place between the ACS Forwarder and the ACS Collector.

It is assumed that the following events have already taken place on the computer hosting the ACS Forwarder before setting up certificates for ACS:

On the computer hosting the ACS Collector, it is assumed that the following has been performed before setting up certificates for ACS.

The following is a high-level overview of the steps that need to be performed to use certificates with ACS.

Note

Certificates used on various components in Operations Manager 2007 (for example, ACS Collector, ACS Forwarder, agent, gateway server, management server, or root management server) must be issued by the same CA.

On the computer hosting the ACS Collector:

  • Run ADTServer -c.

  • Map the ACS Forwarder Certificate in Active Directory.

  • In the Operations Manager Console, enable ACS.

On the computer hosting the ACS Forwarder:

  • Export the certificate to a disk, USB flash drive, or network share.

  • Run ADTAgent -c.

See Also

Tasks

How to Configure Certificates on the ACS Collector in Operations Manager 2007
How to Configure Certificates on the ACS Forwarder in Operations Manager 2007