Objective 8.1 of VCAP6-Deploy exam covers following topics:
- Add/Edit/Remove Users on an ESXi Host
- Configure vCenter Roles and Permissions
- Configure and Manage Active Directory Integration
- Analyze Logs for Security-Related Messages
- Enable and Configure an ESXi Pass-Phrase
- Disable the Managed Object Browser (MOB) to reduce attack surface
We will have a look on these topics one by one
Add/Edit/Remove Users on an ESXi Host
The default built-in accounts that are baked with a new Esxi installation are:
- root user: Each Esxi host has a single root user with an admin role. This account can be used for local administration and used to connect to vCenter.
- vpxuser: vCenter Server uses this account when interacting with the hosts. vCenter Server has Administrator privileges on the host that it manages. The vCenter Server administrator can perform most of the same tasks on the host as the root user, however, he cannot directly create, delete, or edit local users and groups for hosts.