vsphere Rights Management Model
650) this.width=650; "title=" clip_image002 "style=" border-top:0px;border-right:0px;background-image:none; border-bottom:0px;padding-top:0px;padding-left:0px;border-left:0px;padding-right:0px, "border=" 0 "alt=" clip_ image002 "src=" http://s3.51cto.com/wyfs02/M02/6E/AB/wKioL1WCfhix9GrzAAEVCStOvMo395.jpg "height=" 305 "/>
Understand the role of VPX user users
By default, when Esx/esxi are installed, the only user this exists is the root user, and
Root has full administrative permissions to the entire server. This default set of
Permissions changes when a Esx/esxi host is a managed by VCenter Server. the
Process of adding a host to VCenter server adds an agent (the vcenter server
Agent) and an additional Service Console account called vpxuser. The Vpxuser
Account have a 32-character, complex, randomly generated password that's also granted
Membership in the Administrator role on an ESX/ESXI host. This assignment enables
The VCenter Server service to carry out tasks on the ESX/ESXI hosts in the inventory.
Benefits of VCenter Management and maintenance privileges
1. Authority management of the center
2. You can take advantage of domain users
3. can use Data center, folder, resource pool to assign permissions
4. VMs and Template are organized through departments, andHost and Cluster are organized by geography
STEP1: You can create a new role in vcenter
650) this.width=650; "title=" clip_image004 "style=" border-top:0px;border-right:0px;background-image:none; border-bottom:0px;padding-top:0px;padding-left:0px;margin:0px;border-left:0px;padding-right:0px; "border=" 0 "alt = "clip_image004" src= "http://s3.51cto.com/wyfs02/M01/6E/AF/wKiom1WCfGiguuKSAACja0lmmDc512.jpg" height= "388"/>
STEP2: Associating permissions with user groups
650) this.width=650; "title=" clip_image006 "style=" border-top:0px;border-right:0px;background-image:none; border-bottom:0px;padding-top:0px;padding-left:0px;margin:0px;border-left:0px;padding-right:0px; "border=" 0 "alt = "clip_image006" src= "http://s3.51cto.com/wyfs02/M02/6E/AB/wKioL1WCfhug6s2UAACbMsRR2yE862.jpg" height= "/>"
650) this.width=650; "title=" clip_image008 "style=" border-top:0px;border-right:0px;background-image:none; border-bottom:0px;padding-top:0px;padding-left:0px;margin:0px;border-left:0px;padding-right:0px; "border=" 0 "alt = "clip_image008" src= "http://s3.51cto.com/wyfs02/M01/6E/AB/wKioL1WCfhzTejVAAAHTrGxQLb0210.jpg" height= "489"/>
Then use the Vmoperator user to log in to see only one ESXi host
650) this.width=650; "title=" clip_image010 "style=" border-top:0px;border-right:0px;background-image:none; border-bottom:0px;padding-top:0px;padding-left:0px;border-left:0px;padding-right:0px, "border=" 0 "alt=" clip_ image010 "src=" http://s3.51cto.com/wyfs02/M02/6E/AB/wKioL1WCfhzALS1cAADhG_suymY275.jpg "height=" 201 "/>
This article from the "Erick" blog, declined to reprint!
Lesson7 VCenter Permissions Management