admin@vsp.local API account used for interacting with various components in running in a Services Runtime platform.admin@vsp.local API account for VCF Services Runtime 9.1 is not functioning via the Fleet Management UI/API.Note:
admin@vsp.local password via the Fleet Management UI/API.vmware-system-user password, see Resetting the vmware-system-user password for VMware Cloud Foundation Services Runtime.kubectl get secret vsp-admin-secret -n vmsp-platform -o yaml > vsp-admin-secret.yaml.backvsp-admin password.Password Requirements:
export NEW_PASSWORD='<complex_password_from_point_3>'
hash=$(echo ${NEW_PASSWORD} | vmsp passwd --password-stdin | tr -d "\n" | base64 -w0)When the password meets the criteria, you see a response similar to the following:
2026/##/## 10:##:##/opt/vsp/password-policy.json not exist
2026/##/## 10:##:## validating password against local pwquality.confPatch the secret:
kubectl patch secret vsp-admin-secret -n vmsp-platform -p "{\"data\":{\"password\":\"${hash}\"}}"When the commands succeed, you see the following message:
secret/vsp-admin-secret patchedvmware-system-user and export the Kubernetes configuration with the following commands:sudo -i
export KUBECONFIG=/etc/kubernetes/admin.conf
kubectl get httproute vmsp-identity-server-route -n vmsp-platform
<VSP_FQDN> with the output from the previous command:export BASE_URL="<VSP_FQDN>"
<NEW_PASSWORD> with the recently reset admin@vsp.local password:export VSP_ADMIN_PASSWORD='<NEW_PASSWORD>'
echo 'Authenticating as admin@vsp.local...'
TOKEN=$(curl -sk --fail -XPOST \
"https://${BASE_URL}/api/v1/identity/token" \
--header 'content-type: application/x-www-form-urlencoded' \
--data 'grant_type=password' \
--data 'username=admin@vsp.local' \
--data "password=${VSP_ADMIN_PASSWORD}" | jq -r '.access_token')
if [[ -z "$TOKEN" || "$TOKEN" == "null" ]]; then
echo "ERROR: Failed to obtain Bearer token" >&2
else
echo "Auth token obtained."
echo $TOKEN
fi