Configure vcenter Single Sign-on

Source: Internet
Author: User

Vcenter Single Sign-On allows you to add an identity source, manage default domains, configure a password policy, and edit a lock policy.You can configure vcenter Single Sign-on from the vsphere Web Client. To configure vcenter Single Sign-on, you must haveSingle Sign-On administrator privilege. Vcenter Single Sign-On administrator privilege is different from the Administrator angle on vcenter server or esxiColor. By default, the vcenter Single Sign-On service is available only when [email protected] is installed.Server administrator privileges.

Reset the expired vcenter Single Sign-on Password

By default, the vcenter Single Sign-On password (including the [email protected] password) expires after 90 days. Password

When it is about to expire, vsphere Web client will issue a warning. You can reset the expired password from the vsphere Web Client.

In vsphere 5.5 and later versions, the system prompts you to reset the password when logging on with an Expired Password. Vcenter to reset earlier versions

For the single sign-on password, see the product documentation for this version.

Prerequisites

You must know the current but Expired Password corresponding to this user name.

Procedure

1. Go to the vsphere Web Client URL.

2. Provide the user name, current password, and new password when prompted.

If you cannot log on, contact the vcenter Single Sign-on system administrator for help.


Edit vcenter Single Sign-on Password Policy

Vcenter Single Sign-On password policy is a set of rules and restrictions on the format and validity of vcenter Single Sign-on user passwords.

This password policy applies only to users in the vcenter Single Sign-On domain (vsphere. Local.

By default, the vcenter Single Sign-On password expires after 90 days. When the password is about to expire, vsphere Web client will send it to you

Reminder. If you know the old password, you can reset the Expired Password.

Note:

The password policy applies only to user accounts, not to system accounts (for example, [email protected]).

Procedure

1. log on to the vsphere Web client as [email protected] or another user with vcenter Single Sign-On administrator privileges.

2 browseManagement> Single Sign-On> configuration.

3. ClickPolicy TabAnd then selectPassword Policy.

4. ClickEdit.

5. Edit the password policy parameters.

Option description

Password Policy Description. Required.

The maximum number of days before a password can exist.

Restrict the number of previous passwords that cannot be selected for reuse. For example, if you cannot reuse any of the last five passwords, type 5.

The maximum number of characters that a password can contain.

The minimum length of the password must contain the minimum number of characters. The minimum length must not be less than the requirements for letters, numbers, and special characters

.

The password must contain the minimum number of different character types.

N Special: & # %

N letters: a B c d

N Capital: A B C

N lowercase: A B C

N number: 1 2 3

The minimum number of letters must not be less than the sum of upper and lower case letters.

The password cannot contain the following characters: Non-ASCII characters, semicolons (;), double quotation marks ("), single quotation marks ('),

The Tilde (^) and backslash.

The maximum number of consecutive identical characters allowed in the password. The number must be greater than 0. For example, if you enter

1, the following password is not allowed: [email protected] $ word.


Edit vcenter Single Sign-On Lock Policy

Vcenter Single Sign-On locking policy specifies the user account locking Conditions. when a user attempts to log on with incorrect creden

These conditions lock your vcenter Single Sign-On account. You can edit the lock policy.

If you use the wrong password to log on to vsphere. Local multiple times, the user is locked. You can use the lock policy to specify a maximum of failed logon attempts.

The number of times and the duration of failed attempts. This policy can also specify the length of time required before the account is automatically unlocked.

Procedure

1. log on to the [email protected] or another user with vcenter Single Sign-On administrator privileges

Vsphere Web Client.

2 browseManagement> Single Sign-On> Configuration.

3. ClickPolicy TabAnd then selectLock Policy.

4. ClickEdit.

5. edit parameters.

 

Option description

Description of the lock policy. This is a required field.

The maximum number of failed logon attempts allowed before the account is locked.

The time interval (in seconds) between failures. A failed logon attempt must occur before the lock can be triggered.

Unlock time (seconds) the amount of time the account remains locked. If you enter 0, the Administrator must explicitly unlock the account.

6. ClickOK


This article from the "cloud computing nest" blog, please be sure to keep this source http://leegh.blog.51cto.com/8764149/1546598

Configure vcenter Single Sign-on

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.