A user account can be set with a SSH public key. The public key can be set in either of the two formats:
OpenSSH and SECSH.
Admin Account
Each Cisco UCS domain has an admin account. The admin account is a default user account and cannot be
modified or deleted. This account is the system administrator or superuser account and has full privileges.
There is no default password assigned to the admin account; you must choose the password during the initial
system setup.
The admin account is always active and does not expire. You cannot configure the admin account as inactive.
Locally Authenticated User Accounts
A locally authenticated user account is authenticated directly through the fabric interconnect and can be
enabled or disabled by anyone with admin or aaa privileges. Once a local user account is disabled, the user
cannot log in. Configuration details for disabled local user accounts are not deleted by the database. If you
re-enable a disabled local user account, the account becomes active again with the existing configuration,
including username and password.
Remotely Authenticated User Accounts
A remotely authenticated user account is any user account that is authenticated through LDAP, RADIUS, or
TACACS+.
If a user maintains a local user account and a remote user account simultaneously, the roles defined in the
local user account override those maintained in the remote user account.
Expiration of User Accounts
User accounts can be configured to expire at a predefined time. When the expiration time is reached, the user
account is disabled.
By default, user accounts do not expire.
After you configure a user account with an expiration date, you cannot reconfigure the account to not
expire. You can, however, configure the account with the latest expiration date available.
Note
Guidelines for Cisco UCS Manager Usernames
The username is also used as the login ID for Cisco UCS Manager. When you assign usernames to Cisco
UCS Manager user accounts, consider the following guidelines and restrictions:
• The login ID can contain between 1 and 32 characters, including the following:
◦ Any alphabetic character
◦ Any digit
◦ _ (underscore)
◦ - (dash)
◦ . (dot)
Cisco UCS Manager GUI Configuration Guide, Release 2.0
160 OL-25712-04
User Accounts for Cisco UCS Manager