{"id":139,"date":"2015-03-16T15:29:48","date_gmt":"2015-03-16T14:29:48","guid":{"rendered":"http:\/\/www.ritter.cc\/?page_id=139"},"modified":"2015-03-16T15:30:08","modified_gmt":"2015-03-16T14:30:08","slug":"139-2","status":"publish","type":"page","link":"https:\/\/www.ritter.cc\/?page_id=139","title":{"rendered":"Add Local Users"},"content":{"rendered":"<p>Creating and managing local user accounts on vCenter Server Appliance<\/p>\n<p>A couple of days back someone asked me how do we create a local user on the vCenter Server Appliance. So I started to understand how things work for local users on the vCenter Server Aplliance. Well it is pretty simple:<\/p>\n<p>Steps:<\/p>\n<p>Enable SSH on your vCenter Server Appliance.<br \/>\nNow login to your vCenter Server Appliance using a SSH client.<br \/>\nCreate a local user, here\u2019s the command:<\/p>\n<p>useradd vcadmin<br \/>\nImportant: Donot use the useraddd.local command.<\/p>\n<p>Assign a password to the just created user.<\/p>\n<p>passwd vcadmin<br \/>\nUsing the vSphere client, login as root to your vCenter Server Appliance.<br \/>\nSelect the object on which you want to assign permissions for this user. Go to permissions tab for this object and add permissions for this user.<br \/>\nThat\u2019s it.<br \/>\nTest user login and you are done.<br \/>\nIf you need to create a root equivalent user, i.e. a vcenter administrator. You will assign the permissions on the vc-inventory-root (datacenters folder).<br \/>\nNote: vCenter Server Appliance, uses PAM libraries for authenticating users. The PAM libraries on vCenter Server Appliance have been configured for strong authentication. Thus if any user has more than 3 continuous failed logins, the user account would be locked.<\/p>\n<p>You can check whether the user account is locked or not by running the following command on the vCenter Server Appliance over SSH login:<\/p>\n<p>pam_tally  &#8211;user vcadmin<br \/>\nIt will echo something like the following.<\/p>\n<p>User vcadmin    (1005)  has 0<br \/>\nAs long the user has 0 (zero), everthing is good, if it is more than 3, the account is locked. To unlock the account, run the following command:<\/p>\n<p>pam_tally  &#8211;user <username> &#8211;reset<br \/>\nIf its a AD account, unlock it using the following command:<\/p>\n<p>pam_tally  &#8211;user username@domainname &#8211;reset<br \/>\nBTW, if you need to change the default number allowed failed logins from say 3 to 5, edit the following file and update approriately.<\/p>\n<p>\/etc\/pam.d\/common-auth<br \/>\nAlthough I have not tested this, I believe one should be able to add local groups in a similar way.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Creating and managing local user accounts on vCenter Server Appliance A couple of days back someone asked me how do<\/p>\n<p><a href=\"https:\/\/www.ritter.cc\/?page_id=139\" class=\"more-link\">Continue reading<span class=\"screen-reader-text\">Add Local Users<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"parent":130,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"ngg_post_thumbnail":0,"footnotes":""},"class_list":["post-139","page","type-page","status-publish","hentry"],"_links":{"self":[{"href":"https:\/\/www.ritter.cc\/index.php?rest_route=\/wp\/v2\/pages\/139","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.ritter.cc\/index.php?rest_route=\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/www.ritter.cc\/index.php?rest_route=\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/www.ritter.cc\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.ritter.cc\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=139"}],"version-history":[{"count":2,"href":"https:\/\/www.ritter.cc\/index.php?rest_route=\/wp\/v2\/pages\/139\/revisions"}],"predecessor-version":[{"id":141,"href":"https:\/\/www.ritter.cc\/index.php?rest_route=\/wp\/v2\/pages\/139\/revisions\/141"}],"up":[{"embeddable":true,"href":"https:\/\/www.ritter.cc\/index.php?rest_route=\/wp\/v2\/pages\/130"}],"wp:attachment":[{"href":"https:\/\/www.ritter.cc\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=139"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}