PatrickHoban
Enthusiast
Enthusiast

Any AD Account Can Log Into vSphere Web Client


I've started messing with vSphere 5.5.0a. From what I can tell any user with an AD account can log into the vSphere Web Client. They can't really see anything but the fact that they can log in bothers me. The same user cannot log into vCenter using the vSphere Client. What am I missing?

http://patrickhoban.wordpress.com
0 Kudos
3 Replies
akkayyakapisett
Enthusiast
Enthusiast

Check the data identity sources and remove domain users group out of it.

Venkat

http://www.peeradmin.com

0 Kudos
abhilashhb
VMware Employee
VMware Employee

While adding your AD please configure search filter for only required group and not on users. If you do it on users, everyone will be able to access.

------------------------------------------------------------------------------------------------------------------------------------ If you find this or any other answer useful please mark the answer as correct or helpful. Abhilash B | Blog : http://vpirate.in | Twitter : @abhilashhb | LinkedIn : https://www.linkedin.com/in/abhilashhb/ |
0 Kudos
PatrickHoban
Enthusiast
Enthusiast

When adding "Active Directory (Integrated Windows Authentication)" there is not an option to filter based on OU or group. Other options?

Thanks,

Patrick Hoban

http://patrickhoban.wordpress.com

http://patrickhoban.wordpress.com
0 Kudos