Vcenter Single Sign-On allows you to add an identity source, manage default domains, configure a password policy, and edit a lock policy.You can configure vcenter Single Sign-on from the vsphere Web Client. To configure vcenter Single Sign-on, you must haveSingle Sign-On administrator privilege. Vcenter Single Sign-On administrator privilege is different from the Administrator angle on vcenter server or esxiColor. By default, the vcenter Single Sign-On service is available only when [email protected] is installed.Server administrator privileges.
Reset the expired vcenter Single Sign-on Password
By default, the vcenter Single Sign-On password (including the [email protected] password) expires after 90 days. Password
When it is about to expire, vsphere Web client will issue a warning. You can reset the expired password from the vsphere Web Client.
In vsphere 5.5 and later versions, the system prompts you to reset the password when logging on with an Expired Password. Vcenter to reset earlier versions
For the single sign-on password, see the product documentation for this version.
Prerequisites
You must know the current but Expired Password corresponding to this user name.
Procedure
1. Go to the vsphere Web Client URL.
2. Provide the user name, current password, and new password when prompted.
If you cannot log on, contact the vcenter Single Sign-on system administrator for help.
Edit vcenter Single Sign-on Password Policy
Vcenter Single Sign-On password policy is a set of rules and restrictions on the format and validity of vcenter Single Sign-on user passwords.
This password policy applies only to users in the vcenter Single Sign-On domain (vsphere. Local.
By default, the vcenter Single Sign-On password expires after 90 days. When the password is about to expire, vsphere Web client will send it to you
Reminder. If you know the old password, you can reset the Expired Password.
Note:
The password policy applies only to user accounts, not to system accounts (for example, [email protected]).
Procedure
1. log on to the vsphere Web client as [email protected] or another user with vcenter Single Sign-On administrator privileges.
2 browseManagement> Single Sign-On> configuration.
3. ClickPolicy TabAnd then selectPassword Policy.
4. ClickEdit.
5. Edit the password policy parameters.
Option description
Password Policy Description. Required.
The maximum number of days before a password can exist.
Restrict the number of previous passwords that cannot be selected for reuse. For example, if you cannot reuse any of the last five passwords, type 5.
The maximum number of characters that a password can contain.
The minimum length of the password must contain the minimum number of characters. The minimum length must not be less than the requirements for letters, numbers, and special characters
.
The password must contain the minimum number of different character types.
N Special: & # %
N letters: a B c d
N Capital: A B C
N lowercase: A B C
N number: 1 2 3
The minimum number of letters must not be less than the sum of upper and lower case letters.
The password cannot contain the following characters: Non-ASCII characters, semicolons (;), double quotation marks ("), single quotation marks ('),
The Tilde (^) and backslash.
The maximum number of consecutive identical characters allowed in the password. The number must be greater than 0. For example, if you enter
1, the following password is not allowed: [email protected] $ word.
Edit vcenter Single Sign-On Lock Policy
Vcenter Single Sign-On locking policy specifies the user account locking Conditions. when a user attempts to log on with incorrect creden
These conditions lock your vcenter Single Sign-On account. You can edit the lock policy.
If you use the wrong password to log on to vsphere. Local multiple times, the user is locked. You can use the lock policy to specify a maximum of failed logon attempts.
The number of times and the duration of failed attempts. This policy can also specify the length of time required before the account is automatically unlocked.
Procedure
1. log on to the [email protected] or another user with vcenter Single Sign-On administrator privileges
Vsphere Web Client.
2 browseManagement> Single Sign-On> Configuration.
3. ClickPolicy TabAnd then selectLock Policy.
4. ClickEdit.
5. edit parameters.
Option description
Description of the lock policy. This is a required field.
The maximum number of failed logon attempts allowed before the account is locked.
The time interval (in seconds) between failures. A failed logon attempt must occur before the lock can be triggered.
Unlock time (seconds) the amount of time the account remains locked. If you enter 0, the Administrator must explicitly unlock the account.
6. ClickOK
This article from the "cloud computing nest" blog, please be sure to keep this source http://leegh.blog.51cto.com/8764149/1546598
Configure vcenter Single Sign-on