AD Integration using JEA

Kavitha Raydurg
Tera Contributor

Hi, we are trying to integrate with Microsoft AD using JEA, appreciate if anyone has done before would like to share your inputs. 

 

Thanks

Kavitha

1 REPLY 1

cloudops
Tera Expert

Sure, here are the steps to integrate ServiceNow with Microsoft AD using Just Enough Administration (JEA):

1. **Install and Configure JEA on Windows Server:**
- Install Windows Management Framework 5.1 or later.
- Install JEA using PowerShell.
- Create a JEA endpoint. This is a PowerShell session configuration file (.pssc) that defines the specifics of the JEA session.
- Define role capabilities in a PowerShell Role Capability Files (.psrc).
- Register the JEA endpoint using the Register-PSSessionConfiguration cmdlet.

2. **Create a MID Server in ServiceNow:**
- Navigate to MID Server > Servers and click New.
- Fill in the fields as necessary and click Submit.
- Install the MID Server software on the Windows Server where JEA is installed.
- Validate the MID Server status in ServiceNow.

3. **Configure ServiceNow to use JEA:**
- Navigate to System Properties > MID Server.
- Set the property mid.server.jea.enabled to true.
- Set the property mid.server.jea.configuration.name to the name of your JEA endpoint.

4. **Create a Discovery Schedule:**
- Navigate to Discovery > Schedules.
- Click New and fill in the fields as necessary.
- In the Behaviors tab, select Use PowerShell and Use JEA.
- Click Submit.

5. **Run Discovery:**
- Navigate to Discovery > Discover Now.
- Select your Discovery schedule and click Discover.

 

For asking ServiceNow-related questions try this :
For a better and more optimistic result, please visit this website. It uses a Chat Generative Pre-Trained Transformer ( GPT ) technology for solving ServiceNow-related issues.
Link - nowgpt.ai