{"id":1036,"date":"2016-01-02T20:42:55","date_gmt":"2016-01-02T18:42:55","guid":{"rendered":"http:\/\/www.identitycosmos.com\/?p=1036"},"modified":"2016-01-02T20:42:55","modified_gmt":"2016-01-02T18:42:55","slug":"installation-de-centrify-workstation-for-mac-2016-sur-el-capitan-macos-x-10-11-part-14-preparation-de-lenvironnement-pour-installation-de-lagent-centrify","status":"publish","type":"post","link":"https:\/\/identitycosmos.com\/index.php\/2016\/01\/02\/installation-de-centrify-workstation-for-mac-2016-sur-el-capitan-macos-x-10-11-part-14-preparation-de-lenvironnement-pour-installation-de-lagent-centrify\/","title":{"rendered":"Installation de Centrify Workstation for Mac 2016 sur EL CAPITAN (MacOS X 10.11) [Part 1\/4] &#8211; Pr\u00e9paration de l&#8217;environnement pour installation de l&#8217;agent Centrify"},"content":{"rendered":"<p>&nbsp;<\/p>\n<p><b>Installation de Centrify Workstation for Mac 2016 sur EL CAPITAN (MacOS X 10.11) [Part 1\/4] &#8211; Pr\u00e9paration de l&#8217;environnement pour installation de l&#8217;agent Centrify.<\/b><\/p>\n<p>La version 2016 de la Centrify Workstation for Mac est sortie courant D\u00e9cembre 2015. L&#8217;agent livr\u00e9 avec cette version (CentrifyDC-5.3.0-mac10.9.dmg) est directement compatible avec la version OSX 10.11 (EL CAPITAN).<\/p>\n<p>A noter, cette version de l&#8217;agent n&#8217;est plus compatible avec les versions 10.8.x d&#8217;OSX, pour supporter ces anciennes versions, il faut utiliser les agents fournis avec les anciennes versions de la Centrify Workstation for Mac (version 2015.1 ou version 2015 par exemple).<\/p>\n<p>A savoir, le CD Centrify 2016 qui contient les agents ne contient que la version TGZ du paquet de l&#8217;agent Centrify. Une fois le paquet TGZ extrait, celui-ci contient un paquet TAR qui contient les \u00e9l\u00e9ments suivants :<\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image002.jpg\"><img loading=\"lazy\" decoding=\"async\" style=\"background-image: none; padding-top: 0px; padding-left: 0px; margin: 0px; display: inline; padding-right: 0px; border: 0px;\" title=\"clip_image002\" src=\"http:\/\/identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image002_thumb.jpg\" alt=\"clip_image002\" width=\"244\" height=\"128\" border=\"0\" \/><\/a><\/p>\n<p>Le fichier CentrifyDC-5.3.0-mac10.9.dmg est un disque image pour Mac OS X et contenant les \u00e9l\u00e9ments suivants :<\/p>\n<p>\u2022 AD Check.app: une application graphique pour r\u00e9aliser une v\u00e9rification de l&#8217;environnement avant de lancer l&#8217;installation r\u00e9elle de l&#8217;agent (ADCHECK)<\/p>\n<p>\u2022 Un Guide d&#8217;utilisation pour les Administrateurs Mac OS X (Admin Guide for Mac OS X.pdf)<\/p>\n<p>\u2022 Un installeur graphique de l&#8217;agent (CentrifyDC-5.3.0-x86_64.pkg) valide pour Mac OS 10.0.x, 10.10.x et 10.11<\/p>\n<p>\u2022 Un Guide de prise en main rapide (Quick Start Guide for Mac OS X.pdf)<\/p>\n<p>\u2022 Le document de &#8220;Release Notes&#8221; pour cette version de l&#8217;agent (Release Notes for Mac OS X.pdf)<\/p>\n<p>Afin de bien pr\u00e9parer votre environnement, vous pouvez r\u00e9aliser les actions suivantes :<\/p>\n<p>[1] &#8211; Cr\u00e9er des UOs pour ranger vos objets dans AD<\/p>\n<p>Je vous conseille de cr\u00e9er une arborescence comme celle-ci par exemple :<\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image004.jpg\"><img loading=\"lazy\" decoding=\"async\" style=\"background-image: none; padding-top: 0px; padding-left: 0px; margin: 0px; display: inline; padding-right: 0px; border: 0px;\" title=\"clip_image004\" src=\"http:\/\/identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image004_thumb.jpg\" alt=\"clip_image004\" width=\"244\" height=\"183\" border=\"0\" \/><\/a><\/p>\n<p>Dans notre exemple, nous mettrons plus tard les objets des comptes machines MacOS X dans l&#8217;UO &#8220;WORKSTATIONS&#8221;<\/p>\n<p>Bien \u00e9videmment, sur ces UOs, il faudra que l&#8217;administrateur MacOS X est des droits d&#8217;administration suffisant, mais cela, c&#8217;est du design AD pur et dur.<\/p>\n<p>[2] &#8211; Installer les outils d&#8217;administration sur une machine Windows<\/p>\n<p>Vous devez installer mes outils d&#8217;administration (suivre le guide d&#8217;installation) afin d&#8217;avoir au moins deux outils d\u2019install\u00e9s :<\/p>\n<p>Centrify DirectManage &#8211; Access Manager<\/p>\n<p>Centrify DirectManage &#8211; Deployment Manager<\/p>\n<p>[3] Renseigner les licences<\/p>\n<p>Ouvrir l&#8217;outil &#8220;DirectManage Access Manager&#8221; et rajouter les licences pour la partie Mac OS en r\u00e9alisant un clic droit sur le n\u0153ud sup\u00e9rieur et choisir &#8220;Manage Licenses&#8221;<\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image006.jpg\"><img loading=\"lazy\" decoding=\"async\" style=\"background-image: none; padding-top: 0px; padding-left: 0px; margin: 0px; display: inline; padding-right: 0px; border: 0px;\" title=\"clip_image006\" src=\"http:\/\/identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image006_thumb.jpg\" alt=\"clip_image006\" width=\"244\" height=\"139\" border=\"0\" \/><\/a><\/p>\n<p>Puis renseigner la cl\u00e9 de licences dans l&#8217;onglet &#8220;Update&#8221; &#8211; Il faut bien saisir la cl\u00e9 avec les tirets. Une fois les licences valid\u00e9es vous devez avoir une entr\u00e9e telle que : &#8220;Unix Workstation Licenses&#8221;.<\/p>\n<p>[4] &#8211; V\u00e9rifier la configuration de la machine MacOS X:<\/p>\n<p>Aller dans les pr\u00e9f\u00e9rences syst\u00e8mes :<\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image008.jpg\"><img loading=\"lazy\" decoding=\"async\" style=\"background-image: none; padding-top: 0px; padding-left: 0px; margin: 0px; display: inline; padding-right: 0px; border: 0px;\" title=\"clip_image008\" src=\"http:\/\/identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image008_thumb.jpg\" alt=\"clip_image008\" width=\"244\" height=\"132\" border=\"0\" \/><\/a><\/p>\n<p>Puis choisir Network\/R\u00e9seau :<\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image010.jpg\"><img loading=\"lazy\" decoding=\"async\" style=\"background-image: none; padding-top: 0px; padding-left: 0px; margin: 0px; display: inline; padding-right: 0px; border: 0px;\" title=\"clip_image010\" src=\"http:\/\/identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image010_thumb.jpg\" alt=\"clip_image010\" width=\"244\" height=\"210\" border=\"0\" \/><\/a><\/p>\n<p>Renseigner les \u00e9l\u00e9ments r\u00e9seau de mani\u00e8re \u00e0 ce que le MacOS X soit compatible avec votre plan d&#8217;adressage IP r\u00e9seau, renseigner les serveurs DNS qui adressent votre nom de domaine Active Directory.<\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image012.jpg\"><img loading=\"lazy\" decoding=\"async\" style=\"background-image: none; padding-top: 0px; padding-left: 0px; margin: 0px; display: inline; padding-right: 0px; border: 0px;\" title=\"clip_image012\" src=\"http:\/\/identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image012_thumb.jpg\" alt=\"clip_image012\" width=\"244\" height=\"204\" border=\"0\" \/><\/a><\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image014.jpg\"><img loading=\"lazy\" decoding=\"async\" style=\"background-image: none; padding-top: 0px; padding-left: 0px; margin: 0px; display: inline; padding-right: 0px; border: 0px;\" title=\"clip_image014\" src=\"http:\/\/identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image014_thumb.jpg\" alt=\"clip_image014\" width=\"244\" height=\"203\" border=\"0\" \/><\/a><\/p>\n<p>Vous pouvez aussi modifier le nom h\u00f4te de votre syst\u00e8me MacOS, car par d\u00e9faut c&#8217;est le nom qui sera utiliser pour cr\u00e9er l&#8217;objet ordinateur repr\u00e9sentant votre syst\u00e8mes dans Active Directory &#8211; Pour cela, aller dans Pr\u00e9f\u00e9rences syst\u00e8mes, puis choisir Partage\/Sharing:<\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image016.jpg\"><img loading=\"lazy\" decoding=\"async\" style=\"background-image: none; padding-top: 0px; padding-left: 0px; margin: 0px; display: inline; padding-right: 0px; border: 0px;\" title=\"clip_image016\" src=\"http:\/\/identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image016_thumb.jpg\" alt=\"clip_image016\" width=\"244\" height=\"210\" border=\"0\" \/><\/a><\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image018.jpg\"><img loading=\"lazy\" decoding=\"async\" style=\"background-image: none; padding-top: 0px; padding-left: 0px; margin: 0px; display: inline; padding-right: 0px; border: 0px;\" title=\"clip_image018\" src=\"http:\/\/identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image018_thumb.jpg\" alt=\"clip_image018\" width=\"244\" height=\"54\" border=\"0\" \/><\/a><\/p>\n<p>Votre changement doit \u00eatre refl\u00e9t\u00e9 si vous tapez la commande hostname dans un terminal:<\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image020.jpg\"><img loading=\"lazy\" decoding=\"async\" style=\"background-image: none; padding-top: 0px; padding-left: 0px; margin: 0px; display: inline; padding-right: 0px; border: 0px;\" title=\"clip_image020\" src=\"http:\/\/identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image020_thumb.jpg\" alt=\"clip_image020\" width=\"244\" height=\"78\" border=\"0\" \/><\/a><\/p>\n<p>Ensuite, nous allons activer la fonction de &#8220;Remote Login&#8221; dans Partage\/Sharing (Pr\u00e9f\u00e9rences Syst\u00e8mes):<\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image021.jpg\"><img loading=\"lazy\" decoding=\"async\" style=\"background-image: none; padding-top: 0px; padding-left: 0px; margin: 0px; display: inline; padding-right: 0px; border: 0px;\" title=\"clip_image021\" src=\"http:\/\/identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image021_thumb.jpg\" alt=\"clip_image021\" width=\"244\" height=\"210\" border=\"0\" \/><\/a><\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image023.jpg\"><img loading=\"lazy\" decoding=\"async\" style=\"background-image: none; padding-top: 0px; padding-left: 0px; margin: 0px; display: inline; padding-right: 0px; border: 0px;\" title=\"clip_image023\" src=\"http:\/\/identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image023_thumb.jpg\" alt=\"clip_image023\" width=\"244\" height=\"193\" border=\"0\" \/><\/a><\/p>\n<p>A ce stade, un membre des administrateurs du MacOS pourra se connecter en SSH pour notamment transf\u00e9rer l&#8217;agent sur la machine avant installation.<\/p>\n<p>[5] &#8211; Transfert de l&#8217;agent sur la machine<\/p>\n<p>Il existe de nombreux moyens de transf\u00e9rer le fichier dmg de l&#8217;agent, mais comme nous sommes cens\u00e9s \u00eatre en r\u00e9seau nous allons utiliser l&#8217;outil WinSCP que vous pouvez t\u00e9l\u00e9charger ici: <a href=\"http:\/\/winscp.net\/eng\/download.php\">http:\/\/winscp.net\/eng\/download.php<\/a><\/p>\n<p>Installer WinSCP sur la machine qui sert \u00e0 l&#8217;administration Centrify (par exemple), puis lancer WinSCP et param\u00e9trer une session SFTP pour transf\u00e9rer le package Centrify &#8211; choisir un nom utilisateur qui fait partie des Administrateurs locaux du MacOS (dans notre exemple, l&#8217;utilisateur a un login &#8220;florent&#8221;:<\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image025.jpg\"><img loading=\"lazy\" decoding=\"async\" style=\"background-image: none; padding-top: 0px; padding-left: 0px; margin: 0px; display: inline; padding-right: 0px; border: 0px;\" title=\"clip_image025\" src=\"http:\/\/identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image025_thumb.jpg\" alt=\"clip_image025\" width=\"244\" height=\"166\" border=\"0\" \/><\/a><\/p>\n<p>Transf\u00e9rer ensuite le package DMG sur le bureau de florent (r\u00e9pertoire Desktop):<\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image027.jpg\"><img loading=\"lazy\" decoding=\"async\" style=\"background-image: none; padding-top: 0px; padding-left: 0px; margin: 0px; display: inline; padding-right: 0px; border: 0px;\" title=\"clip_image027\" src=\"http:\/\/identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image027_thumb.jpg\" alt=\"clip_image027\" width=\"244\" height=\"75\" border=\"0\" \/><\/a><\/p>\n<p>Le package doit alors apparaitre sur le bureau de l\u2019utilisateur :<\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image029.jpg\"><img loading=\"lazy\" decoding=\"async\" style=\"background-image: none; padding-top: 0px; padding-left: 0px; display: inline; padding-right: 0px; border: 0px;\" title=\"clip_image029\" src=\"http:\/\/identitycosmos.com\/wp-content\/uploads\/2016\/01\/clip_image029_thumb.jpg\" alt=\"clip_image029\" width=\"231\" height=\"227\" border=\"0\" \/><\/a><\/p>\n<p>Une fois ces \u00e9l\u00e9ments pr\u00e9par\u00e9s, nous allons maintenant passer \u00e0 l&#8217;installation de l&#8217;agent c\u00f4t\u00e9 Mac OS X dans le prochain article.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>&nbsp;<\/p>\n<p>Installation de Centrify Workstation for Mac 2016 sur EL CAPITAN (MacOS X 10.11) [Part 1\/4] &#8211; Pr\u00e9paration de l&#8217;environnement pour installation de l&#8217;agent Centrify.<\/p>\n","protected":false},"author":3,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[3,7],"tags":[14,62,132,140],"class_list":["post-1036","post","type-post","status-publish","format-standard","hentry","category-centrify","category-technique","tag-active-directory","tag-centrify","tag-kerberos","tag-mac-os"],"_links":{"self":[{"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/posts\/1036","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/comments?post=1036"}],"version-history":[{"count":0,"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/posts\/1036\/revisions"}],"wp:attachment":[{"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/media?parent=1036"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/categories?post=1036"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/tags?post=1036"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}