This article provides steps to enable the use of Active Directory accounts to open SSH sessions on ESXi 6.5 and 6.7 using the domainjoin-cli command.
Symptoms:
Joining ESXi to Active Directory is successful but logins with AD accounts fail.
ESXi was joined to AD from the command line using domainjoin-cli.
Messages similar to these appear in
/var/log/hostd.log when using AD accounts.
2020-05-21T14:53:38.350Z warning hostd[2100215] [Originator@6876 sub=Default opID=esxui-dd22-0d56] Rejected password for user domain\user from 10.10.10.10
2020-05-21T14:53:38.350Z info hostd[2100215] [Originator@6876 sub=Vimsvc.ha-eventmgr opID=esxui-dd22-0d56] Event 262 : Cannot login domain\[email protected]
2020-05-21T14:53:41.352Z info hostd[2100565] [Originator@6876 sub=Solo.Vmomi] Throw vim.fault.InvalidLogin