Solved

ESXi Permissions

Posted on 2014-04-16
6
368 Views
Last Modified: 2014-04-16
Hi,
  I am having an issue with ESXi Permissions sticking. I have a single Host with 2 Resource pools. I have it joined to the Domain and have assigned permissions to 2 users just to one of the Resource Pools. I've done this on the ESXi 5.1 Host itself although it is connected to a vCenter Server. The reason I did this is the Host is in a Remote Office while the vCenter is in the Branch Office. I need the users to access the Host even if the connection to the vCenter Server is down. This seems to be working but every so many weeks the permissions are removed and there is nothing in the log about it. I have to reassign the permissions for the user to access the Resource pool and connect to the Console of the needed Servers.
0
Comment
Question by:CooleyAdmin
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 3
6 Comments
 
LVL 121
ID: 40003854
How are the permissions being added?
0
 

Author Comment

by:CooleyAdmin
ID: 40003892
I connect directly to the ESXi 5.1 Host and add them directly to the Resource Pool via Right Click Add Permissions. So the 2 Users show as Defined "This Object" The other permissions that are always there are ones assigned on the Entire Host.
0
 
LVL 121
ID: 40003938
So you are not connecting to vCenter Server?
0
Visualize your virtual and backup environments

Create well-organized and polished visualizations of your virtual and backup environments when planning VMware vSphere, Microsoft Hyper-V or Veeam deployments. It helps you to gain better visibility and valuable business insights.

 

Author Comment

by:CooleyAdmin
ID: 40003953
No I don't add the permission via vCenter Server cause the users connect directly to the host. I have them do this cause if for any reason they loose connection to vCenter I need them still to have the ability to console into the VMs in that Resource Pool. So although the Host is connected to vCenter the permissions are assigned directly to the Host via connecting to the host and assigning the permissions that way.
0
 
LVL 121

Accepted Solution

by:
Andrew Hancock (VMware vExpert / EE MVE^2) earned 500 total points
ID: 40003976
In that case, vCenter is probably resetting the permissions, because Access control, is supposed to be controlled via vCenter Server.

Adding permissions directly to ESXi Host is not supported when being Managed by vCenter Server, when you connect directly to ESXi, it states this!

So I would either

1. Manage via vCenter Server

2. Manage directly via ESXi Host and vSphere Client (and remove from vCenter Server)
0
 

Author Comment

by:CooleyAdmin
ID: 40003983
Ahh OK I kinda felt that and was concerned that was the case. The permissions stick for awhile but do disappear eventually. Removing it from vCenter is not an option as this is required for our DR Solution. I may need to purchase another License of vCenter and run one in the Branch office or move my vCenter Server to that facility. Thanks for the confirmation
0

Featured Post

Visualize your virtual and backup environments

Create well-organized and polished visualizations of your virtual and backup environments when planning VMware vSphere, Microsoft Hyper-V or Veeam deployments. It helps you to gain better visibility and valuable business insights.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this step by step tutorial with screenshots, we will show you HOW TO: Enable SSH Remote Access on a VMware vSphere Hypervisor 6.5 (ESXi 6.5). This is important if you need to enable SSH remote access for additional troubleshooting of the ESXi hos…
This article outlines why you need to choose a backup solution that protects your entire environment – including your VMware ESXi and Microsoft Hyper-V virtualization hosts – not just your virtual machines.
Teach the user how to convert virtaul disk file formats and how to rename virtual machine files on datastores. Open vSphere Web Client: Review VM disk settings: Migrate VM to new datastore with a thick provisioned (lazy zeroed) disk format: Rename a…
Teach the user how to configure vSphere clusters to support the VMware FT feature Open vSphere Web Client: Verify vSphere HA is enabled: Verify netowrking for vMotion and FT Logging is in place or create it: Turn On FT for a virtual machine: Verify …

734 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question