VMWare ESX/i
This topic describes the VMWare ESX/i plugin.
Support
Target devices
The CPM supports remote account management for VMWare ESX/i accounts on the following target devices:
6.5, 6.7, 7.0, 8.0*
Accounts
The CPM supports account management for the following accounts:
-
Root
-
Local users on ESX/i, excluding DCUI, Vpxuser, and Vimuser users
Platforms
In the Privilege Cloud Portal Platform Management page, make sure that the following target account platform is displayed:
-
VMware ESX Account API
Connection methods
This plugin supports the following connection methods to the remote machine:
-
HTTPS
-
HTTP
Actions
The following table lists the supported password management actions for this platform:
Action |
Verify |
Supported | ü |
Permissions | Read only |
Action |
Change |
Supported | ü |
Permissions | Administrator |
Action |
Reconcile |
Supported | ü |
Permissions | Administrator |
Action |
Delete |
Supported | û |
Permissions |
Logon accounts
Action |
Logon and change |
Supported | ü |
Required | û |
Platform | VMware ESX Account API |
Permissions | Administrator |
Reconcile accounts
Action |
Reconcile |
Platform |
VMware ESX Account API |
Permissions |
Administrator |
Connection components
The VMWare vSphere Client and VMWare vSphere Web PSM connectors are used with accounts managed by this plugin.
Configuration
Platform Parameters
UseSSL |
|
Description |
Whether or not an SSL connection will be used to connect to the remote device. Using certificates is a security best practice that allows authentication between two machines that trust the same root certificate to authenticate each other and verify that each machine is what it claims to be. To determine the best setting for your environment, consult the VMWare Admin for your organization. |
Acceptable Values |
|
Default Value |
IgnoreUntrustedCertificate |
Account parameters
Required
Address |
|
Description |
The address of the remote machine where the password will be used. |
Acceptable Values |
Valid IP address |
Default Value |
|
Username |
|
Description |
The name of the user on the remote machine who the password belongs to. |
Acceptable Value |
Username |
Default Value |