website/integrations/hypervisors-orchestrators/vmware-vcenter/index.md
vCenter Server is the centralized management utility for VMware, and is used to manage virtual machines, multiple ESXi hosts, and all dependent components from a single centralized location. VMware vMotion and svMotion require the use of vCenter and ESXi hosts.
:::caution Integration with authentik requires VMware vCenter 8.03 or newer. :::
The following placeholders will be used in the examples below:
vcenter.company is the FQDN of the vCenter server.authentik.company is the FQDN of the authentik installation.:::info This documentation lists only the settings that you need to change from their default values. Be aware that any changes other than those explicitly mentioned in this guide could cause issues accessing your application. :::
To support the integration of vCenter with authentik, you need to create an application/provider pair in authentik.
Strict redirect URI to https://vcenter.company/ui/login/oauth2/authcode.Log in to vCenter with your local Administrator account. Using the menu in the left navigation bar, navigate to Administration > Single Sign-on > Configuration.
Click Change Provider in the top-right corner, and then select Okta from the drop-down list.
In the wizard, click Run Prechecks, select the confirmation box, and then click Next
authentik or any other name.authentik.company.Click Next.
On the OpenID Connect page, enter the following values:
authentik.Click Next, and then Finish.
On the Single Sign On > Configuration page, in the User Provisioning area, take the following steps:
Return to the authentik Admin interface.
vcenter-scim.vCenter.User filtering to your needs.Return to vCenter.
Click Save.