SCOM 2012: Untrusted agents and Gateway servers in separate Management Groups

תשובה SCOM 2012: Untrusted agents and Gateway servers in separate Management Groups

  • Monday, July 02, 2012 8:26 PM
     
     

    Hello,

    We're looking to setup a SCOM 2012 solution with two separate unconnected management groups for DR.  Here is our proposed config:

    Management Group A (Virginia-Primary) will contain 2 management servers for trusted agents and 1 GW server for 50 untrusted Agents.  The Ops Mgr database & Datawarehouse will be local to Group A.

    Management Group B (Dallas-DR) will contain 1 management server with 0 trusted clients and 1 GW server for 50 untrusted Agents.  A separate Ops Mgr database and datawarehouse installation will be local for Group B.

    Is it possible for the 50 untrusted Agents to be monitored by two separate GW servers in different unconnected management groups?  It doesn't have to be at the same time.  I want the ability to move them to Management Group B (Dallas-DR) if the Virginia-Primary goes down.

    If so, how would I move the untrusted agents from GW server in Group A to the GW server in Group B?

    Thanks,

    Brian.

All Replies

  • Tuesday, July 03, 2012 3:06 AM
    Moderator
     
     Answered

    >Is it possible for the 50 untrusted Agents to be monitored by two separate GW servers in different unconnected management groups?

    Yes, you can have a multi-homed agents. All you need in your case is a common trusted certification authority, so both gateways must trust a CA that issued a certs for a untrusted machines. 


    http://OpsMgr.ru/

    • Marked As Answer by mrbsmallz Thursday, July 12, 2012 2:13 PM
    •  
  • Thursday, July 12, 2012 2:17 PM
     
     
    Thanks for your response Alexey!

    Brian