What is true regarding this scenario?

For security reasons, an administrator removes a user from the Active Directory domain used by
all ESXi hosts for authentication. At the time the user is removed they are actively logged into an
ESXi 5.x host through the vSphere Client.
What is true regarding this scenario?

For security reasons, an administrator removes a user from the Active Directory domain used by
all ESXi hosts for authentication. At the time the user is removed they are actively logged into an
ESXi 5.x host through the vSphere Client.
What is true regarding this scenario?

A.
The user immediately loses connectivity to and permissions on the host.

B.
The user retains permissions and connectivity to the host for up to 24 hours.

C.
The user retains permissions on the host until the host is rebooted.

D.
The user retains permissions on the object until the next time the user logs in to vCenter
Server.

Explanation:
http://pubs.vmware.com/vsphere-50/topic/com.vmware.ICbase/PDF/vsphere-esxivcenter-server-50-security-guide.pdf



Leave a Reply 2

Your email address will not be published. Required fields are marked *


AlektroNik

AlektroNik

No, C only Local ESXi User.
Remove a Local ESXi User from a Host
Users who are logged in and are removed from the domain keep their host permissions until you restart the host.
(http://pubs.vmware.com/vsphere-55/index.jsp#com.vmware.vsphere.hostclient.doc/GUID-62AD0AFA-0A42-40EA-9D78-3A7FCD7F7E87.html?resultof=%2522%2552%2565%256d%256f%2576%2565%2522%2520%2522%2572%2565%256d%256f%2576%2522%2520%2522%2555%2573%2565%2572%2522%2520%2522%2575%2573%2565%2572%2522%2520%2522%2547%2572%256f%2575%2570%2522%2520%2522%2567%2572%256f%2575%2570%2522%2520)

Correct are answer B. Applies to vCenter and AD.
Removing or Modifying vCenter Server Users
Users who are logged in and are removed from the AD domain keep their vSphere permissions until the
next validation period. The default is every 24 hours. It can be changed in the vCenter Server settings.