<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:clearspace="http://www.jivesoftware.com/xmlns/clearspace/rss" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:opensearch="http://a9.com/-/spec/opensearch/1.1/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>VMware Communities: Message List - ESX v3.5 and LDAP ??</title>
    <link>http://communities.vmware.com/community/vmtn/general/security?view=discussions</link>
    <description>Most recent forum messages</description>
    <language>en</language>
    <pubDate>Tue, 30 Jun 2009 12:47:59 GMT</pubDate>
    <generator>Clearspace 1.10.12 (http://jivesoftware.com/products/clearspace/)</generator>
    <dc:date>2009-06-30T12:47:59Z</dc:date>
    <dc:language>en</dc:language>
    <item>
      <title>Re: ESX v3.5 and LDAP ??</title>
      <link>http://communities.vmware.com/message/1298600?tstart=0#1298600</link>
      <description>Hello,&lt;br /&gt;
&lt;br /&gt;
Moved to the Security forum.&lt;br /&gt;
&lt;br /&gt;
You need to use different controls within your LDAP server. However you can use pam_tally.so and pam_cracklib.so to improve your local security for passwords.. &lt;br /&gt;
&lt;br /&gt;
One option is:&lt;br /&gt;
&lt;br /&gt;
&lt;pre class="jive-pre"&gt;&lt;code class="jive-code jive-plain"&gt;esxcfg-auth --usecrack=3 14 2 2 2 2
&lt;/code&gt;&lt;/pre&gt;&lt;br /&gt;
&lt;br /&gt;
First entry is '3' retries for a password attempt.&lt;br /&gt;
&lt;br /&gt;
&lt;br&gt;Best regards, &lt;br /&gt;
Edward L. Haletky VMware Communities User Moderator, VMware vExpert 2009, &lt;a class="jive-link-external" href="http://www.virtualizationpractice.com"&gt;Virtualization Practice Analyst&lt;/a&gt;&lt;br&gt;Now Available: &lt;a class="jive-link-external" href="http://www.astroarch.com/wiki/index.php/VMware_Virtual_Infrastructure_Security"&gt;'VMware vSphere(TM) and Virtual Infrastructure Security: Securing the Virtual Environment'&lt;/a&gt;&lt;br&gt;Also available &lt;a class="jive-link-external" href="http://www.astroarch.com/wiki/index.php/VMWare_ESX_Server_in_the_Enterprise"&gt;'VMWare ESX Server in the Enterprise'&lt;/a&gt;&lt;br&gt;&lt;a class="jive-link-external" href="http://www.astroarch.com/wiki/index.php/Blog_Roll"&gt;SearchVMware Pro&lt;/a&gt;|&lt;a class="jive-link-external" href="http://www.astroarch.com/blog"&gt;Blue Gears&lt;/a&gt;|&lt;a class="jive-link-external" href="http://www.astroarch.com/wiki/index.php/Top_Virtualization_Security_Links"&gt;Top Virtualization Security Links&lt;/a&gt;|&lt;a class="jive-link-external" href="http://www.astroarch.com/wiki/index.php/Virtualization_Security_Round_Table_Podcast"&gt;Virtualization Security Round Table Podcast&lt;/a&gt;</description>
      <pubDate>Tue, 30 Jun 2009 12:47:59 GMT</pubDate>
      <author>Texiwill</author>
      <guid>http://communities.vmware.com/message/1298600?tstart=0#1298600</guid>
      <dc:date>2009-06-30T12:47:59Z</dc:date>
      <clearspace:dateToText>4 months, 3 weeks ago</clearspace:dateToText>
    </item>
    <item>
      <title>Re: ESX v3.5 and LDAP ??</title>
      <link>http://communities.vmware.com/message/1288551?tstart=0#1288551</link>
      <description>I do not have if this control exist in the pam_ldap version with ESX 3.5.&lt;br /&gt;
&lt;br /&gt;
But you can apply this control on your LDAP server.&lt;br /&gt;
During password change, the backend will reject the password.&lt;br /&gt;
&lt;br /&gt;
Andre</description>
      <pubDate>Thu, 18 Jun 2009 18:37:37 GMT</pubDate>
      <author>AndreTheGiant</author>
      <guid>http://communities.vmware.com/message/1288551?tstart=0#1288551</guid>
      <dc:date>2009-06-18T18:37:37Z</dc:date>
      <clearspace:dateToText>5 months, 1 week ago</clearspace:dateToText>
      <clearspace:replyCount>1</clearspace:replyCount>
    </item>
    <item>
      <title>ESX v3.5 and LDAP ??</title>
      <link>http://communities.vmware.com/message/1288453?tstart=0#1288453</link>
      <description>&lt;br /&gt;
Howdy,&lt;br /&gt;
&lt;p /&gt;
ESX v3.5 can use LDAP for authentication - so far so good. I have a requriement to maintain "password minimum difference = 3" Does ESX server have this setting?&lt;br /&gt;
&lt;p /&gt;
Thank you in advance,&lt;br /&gt;
&lt;p /&gt;
Bill Burke</description>
      <pubDate>Thu, 18 Jun 2009 17:26:01 GMT</pubDate>
      <author>btrcmptr</author>
      <guid>http://communities.vmware.com/message/1288453?tstart=0#1288453</guid>
      <dc:date>2009-06-18T17:26:01Z</dc:date>
      <clearspace:dateToText>5 months, 1 week ago</clearspace:dateToText>
      <clearspace:replyCount>2</clearspace:replyCount>
    </item>
  </channel>
</rss>

