

Everyone in the domain admin group will essentially have root access to the host. If you join the host to the domain you can eliminate the need to constantly change the root password of your host every time one of your administrators leaves your company.īy allowing AD to authenticate, you can simply delegate permissions based on your AD groups such as the ‘Domain Admins' group. That, in and of itself, is worth joining the host to the domain.Īside from allowing your AD credentials to authenticate you, it's a good process of hardening your ESXi host. Why? For one, you can use your Active Directory (AD) credentials to log into the host if you have to directly.


It's important to join your ESXi host to a Windows domain if there is one present in your architecture.
