VMWare ESX/i

This topic describes the VMWare ESX/i plugin.

Support

Target devices

The CPM supports remote account management for VMWare ESX/i accounts on the following target devices:

6.5, 6.7, 7.0, 8.0*

Version 8.0 only works with Rebex.

Accounts

The CPM supports account management for the following accounts:

  • Root

  • Local users on ESX/i, excluding DCUI, Vpxuser, and Vimuser users

Platforms

In the Privilege Cloud Portal Platform Management page, make sure that the following target account platform is displayed:

  • VMware ESX Account API

Connection methods

This plugin supports the following connection methods to the remote machine:

  • HTTPS

  • HTTP 

Actions

The following table lists the supported password management actions for this platform:

Action

Verify

Supported ü
Permissions Read only

Action

Change

Supported ü
Permissions Administrator

Action

Reconcile

Supported ü
Permissions Administrator

Action

Delete

Supported û
Permissions  

Logon accounts

Action

Logon and change

Supported ü
Required û
Platform VMware ESX Account API
Permissions Administrator

Reconcile accounts

Action

Reconcile

Platform

VMware ESX Account API

Permissions

Administrator

Connection components

The VMWare vSphere Client and VMWare vSphere Web PSM connectors are used with accounts managed by this plugin.

Configuration

Platform Parameters

UseSSL

Description

Whether or not an SSL connection will be used to connect to the remote device.

Using certificates is a security best practice that allows authentication between two machines that trust the same root certificate to authenticate each other and verify that each machine is what it claims to be. To determine the best setting for your environment, consult the VMWare Admin for your organization.

Acceptable Values

  • Yes – An SSL connection will be used to connect to the remote device.

  • No – An SSL connection will not be used to connect to the remote device.

  • IgnoreUntrustedCertificate – Enables the use of SSL during connections but does not require certificates on the VMWare vCenter to be signed.

Default Value

IgnoreUntrustedCertificate

Account parameters

Required

Address

Description

The address of the remote machine where the password will be used.

Acceptable Values

Valid IP address

Default Value

 

Username

Description

The name of the user on the remote machine who the password belongs to.

Acceptable Value

Username

Default Value