To Set root Password expiry in esxi 4.1

I have  to set the password expiry [max number of days ]for root and other user available on esxi 4.1

please advice how to configure and check ?
LVL 1
patronTechnical consultant Asked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Seth SimmonsSr. Systems AdministratorCommented:
0
patronTechnical consultant Author Commented:
Thanks, But am looking for ESXI 4.1
0
TimotiStDatacenter TechnicianCommented:
The article posted by @seth2740 is valid for 4.1.
0
10 Tips to Protect Your Business from Ransomware

Did you know that ransomware is the most widespread, destructive malware in the world today? It accounts for 39% of all security breaches, with ransomware gangsters projected to make $11.5B in profits from online extortion by 2019.

patronTechnical consultant Author Commented:
Thanks ,agreed,pls confirm if this is applicable for esxi as well
0
MysidiaCommented:
I believe the answer is no.    Aging functionality works in ESX but not ESXi.
If you need to enforce password changes,  then you must do so through administrative procedures,  as there is not a technical control available.

I would suggest the use of password vauling tools such as those available from Reflex or HyTrust,  to  implement automatic management of administrative passwords.

In general, ESXi local credentials are for initial setup and emergencies; not to be used for day-to-day management.

Furthemore,   ESXi5  does not support password aging, and  VMware has no plans to support it.       https://communities.vmware.com/thread/451042?start=0&tstart=0


End of Support for  ESXi 4.1  is May 21, 2014.    You have approximately 6 months to update to a newer release,   before VMware will  no longer provide any security updates or technical assistance for any issues.
1

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
patronTechnical consultant Author Commented:
Great, this is something i was expecting for this question.
Thanks a lot again
Please can you share any kb or vmware recommandation  like password expiry and criteria should not be configured on esxi 4.1 ?
0
patronTechnical consultant Author Commented:
can we do something for security hardning on esxi 4.1

like access of diff dir ?
user limitation/creataion  ?
0
MysidiaCommented:
Remember the ESXi hosts can be joined to an AD domain,  and you can then enforce password policies  (on users other than root)  using AD password controls.

The vSphere ESXi 4.1  Security Hardening guide is here: http://www.vmware.com/files/pdf/techpaper/VMW-TWP-vSPHR-SECRTY-HRDNG-USLET-101-WEB-1.pdf

The absence of a feature from this list, is an indication that it is not there.
VMware is not known to be writing KB articles  on features that don't exist.

Password aging for root is clearly a  feature not frequently requested,  otherwise,  it would be supported,  or a workaround would be published.


For ESX  (not ESXi)  this is discussed in the security hardening guide:

COP04
To set the maximum password age, use the following command:
esxcfg-auth --passmaxdays=n


You have the option of lockdown mode   from vCenter
http://kb.vmware.com/selfservice/microsites/search.do?language=en_US&cmd=displayKC&externalId=1008077
1
patronTechnical consultant Author Commented:
Thanks
0
patronTechnical consultant Author Commented:
yes please
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
VMware

From novice to tech pro — start learning today.