Configuring the Reporting Feature
11 min
if your deployment includes the reporting feature, you need to set up authentication authentication is only needed for the reporting feature, and not for deployments that do not use the reporting feature authenticating the application database docid\ couzxt6uu2ahbhtz30dlaconfiguring microsoft ssrs docid\ couzxt6uu2ahbhtz30dlaconfiguring the reporting feature docid\ couzxt6uu2ahbhtz30dla authenticating the application database the wizard walks you through the first time set up and configuration as shown in the screenshots below click next click next to continue the installation process select one of the options, service manager , asset manager , or service and asset manager for more information on asset manager, see ivanti asset manager https //help ivanti com/iv/help/en us/iamc/2020/landing page htm click next when you configure , you set the authentication for the application database on the application page of the system configuration wizard, as shown in ivanti service manager application settings docid\ couzxt6uu2ahbhtz30dla ivanti service manager application settings you can select either windows authentication or sql authentication (when you configure the reporting feature, you have an opportunity to review and change the authentication method, if necessary, on the microsoft ssrs configuration page see configuring the reporting feature docid\ couzxt6uu2ahbhtz30dla ) if you select windows authentication, you can use the microsoft ssrs service account, the microsoft iis app pool identity account, or any other account, but they must have permission to access the application database and the microsoft ssrs database if you select sql authentication, you can use a different system account we recommend having separate authentication for microsoft ssrs, the application database, and the microsoft ssrs database configuring microsoft ssrs microsoft ssrs configuration page enter values into the fields parameter description report server host the name of the reporting feature server the default name is the name of the server that you are currently logged into you cannot change this value microsoft ssrs instance the instance of microsoft ssrs to use for the reporting feature select a value from the dropdown list (recommended) click backup to back up your microsoft ssrs configuration (if prompted, enter a password to unlock the backup file, and then click ok ) the system displays the new ssrs configuration backup dialog box with information about the backup new ssrs configuration backup dialog box to change the location of the backup, click browse , select a new location, and click ok click ok to close the dialog box the system displays the backup encryption key dialog box (if you do not see this dialog box immediately, the system displays it after you click next at the bottom of the page when you are done with the configuration on this page of the system configuration wizard ) do the following (optional) enter a new file location enter a password confirm the password click ok select a microsoft ssrs authentication type windows authentication shares the microsoft ssrs instance with multiple applications, including custom authentication does not share the microsoft ssrs instance with any other applications the microsoft ssrs instance is used for only with custom authentication, you can have a multi tenant environment if you have multiple instances of microsoft ssrs, choose each instance carefully before choosing the authentication method to use with that instance if you plan to share the same microsoft ssrs instance with other applications besides the reporting feature, you must use windows authentication if you plan to create a multiple tenant environment, you must use custom authentication if you plan to use a dedicated microsoft ssrs instance only for the reporting feature, you can use either microsoft ssrs authentication type if you select a microsoft ssrs instance and select custom authentication, the system configuration wizard overwrites the existing microsoft ssrs configuration if the microsoft ssrs instance that you selected is shared with another application, the installer deletes the configuration for that application before proceeding, ensure that the microsoft ssrs instance is not in use by another application enter values into the fields parameter description service account select the service account to use this can be the same account that is used for the iis application pool identity and the windows service, that you entered on the application server settings page you can select one of the following use built in account (note you cannot select this option if you selected windows authentication for the microsoft ssrs authentication type in step 5 ) use another account use built in account (only if you selected use built in account) select the built in account to use this can be the same account that is used for the iis application pool identity and the windows service, that you entered on the application server settings page you can select one of the following local system this account has the most permissions network service we recommend that you use this account local service account (only if you selected use another account) the name of the service account use the format domain/name password (only if you selected use another account) the password associated with the service account web service virtual directory the name of the web service virtual directory the system automatically fills in this field with the value that you entered in the web service virtual directory field on the application server settings page see configuring the application server settings docid\ yf15sxfvkr4xjcsxnnqg4 the default value for the web service virtual directory is reportserver + ssrs instance name do one of the following accept the default value enter a new value click advanced to configure multiple identities for the reporting feature web service report manager virtual directory the name of the report manager virtual directory the default value is reports + ssrs instance name do one of the following accept the default value enter a new value click advanced to configure multiple identities for the report manager database server the name of the database server the system automatically displays the default microsoft sql server name do one of the following accept the default value enter the name of the server of the configuration database in this format machinename\instance browse for a server name by clicking the down arrow and selecting \<browse for more > the system displays any microsoft sql server instances in your network choose a server and click ok notes do not choose localhost unless you are setting up a demonstration or proof of concept deployment docid\ g8olkisyshsvioayypcuc to restore the microsoft sql server name if you changed the name previously, open microsoft sql server management studio the system displays the microsoft sql server name in the connect to server dialog box database name the name of the reporting database the default name is reportserver + $ssrs instance name credentials the credentials to use with the reporting feature select one of the following sql server credentials windows credentials service credentials user name the user name for the credential used with the reporting feature password the password associated with the credential used with the reporting feature we recommend creating passwords using alphanumeric characters special characters are not permitted click test connection the system displays connection successful! if the connection is good enter values into the fields parameter description smtp server the server that sends out the reports the system automatically verifies the smtp server name that you enter if the name is not valid, the system displays an error message sender address the email address for the account that sends out the reports click next the system displays the ivanti reporting service configuration page see configuring the reporting feature docid\ couzxt6uu2ahbhtz30dla (if the system displays the backup encryption key dialog box, see step 5 ) configuring the reporting feature you configure the reporting feature on the reporting service configuration page see reporting service configuration page docid\ couzxt6uu2ahbhtz30dla reporting service configuration page enter values into the fields parameter description configuration server the host name of the configuration server the default value is the name of the server that you are logged into now if the host that you are logged into now is not the configuration server, enter the machine name or fully qualified domain name of your configuration server if you check use ssl below, you must enter the fully qualified domain name of the configuration server port the port number of the configuration server the default is 80, or 443 if you check use ssl use ssl check to use ssl for connections to the configuration server note we do not recommend enabling ssl on the configuration server until you have fully tested to ensure that it works with ssl for information on configuring with ssl, see optional ssl configuration docid\ aei5nbqfmqwo5t3rabtex click test connection to test the connection to the configuration server the system displays a success or failure message click ok to close the message enter values into the fields parameter description account type the database account type select from one of the following sql server credentials windows credentials note if you selected custom authentication in step 6 of configuring microsoft ssrs docid\ couzxt6uu2ahbhtz30dla , this option automatically displays as sql server credentials and you cannot change it user name the user name for the database read only account password the password associated with the user name click test connection to test the connection to the configuration server the system displays connection successful! if the connection is good click modify to add servers to or remove servers from the list of application servers that are used with the reporting feature if you have multiple domains in your deployment, the reporting server may not be able to connect to the web server in this case, remove the server from the list and configure reporting manually enter values into the fields parameter description report user name (only if you selected custom authentication in step 6 of configuring microsoft ssrs docid\ couzxt6uu2ahbhtz30dla ) the user name for the user who configures the reporting feature report user password (only if you selected custom authentication in step 6 of configuring microsoft ssrs docid\ couzxt6uu2ahbhtz30dla ) the password associated with the user name to verify that the configuration settings work, do the following a click reprovision report now to update the sample report data to the application see reporting service configuration page docid\ couzxt6uu2ahbhtz30dla if the systems returns an exception such as "cannot decrypt the symmetric key" b log into as a report manager c ensure that you can see the sample reports and create one when you see confirmation that the out of the box reports have been provisioned, that is, the last line of this step changes from oob reports (not provisioned yet) to oob reports (provisioned on date) , click finish to close the system configuration wizard the system displays the completed page of the system configuration wizard if the system displays an error message that the system failed to configure reporting for an application server, ensure that you checked use these settings for reporting service on the application server settings page restart your system (the host server that you just configured) after the system restarts, ensure that you can access go to http // server name /heat and ensure that the reporting feature is functional
