VMware Cloud Community
Sma11T0wnITGuy
Contributor
Contributor

How to secure ESXi 5.0 server that is visible to Internet

I've been reviewing the ESXi 5.0 Security Guide but don't see much in the way of what services I can or should turn off or block for an ESXi server that's visible to the Internet.

http://pubs.vmware.com/vsphere-50/topic/com.vmware.ICbase/PDF/vsphere-esxi-vcenter-server-50-securit...

Has anyone had experience configuring this?  Any recommendations about services that can be turned off or blocked using the ESXi firewall without impeding the functionality of vSphere Client?

Sincerely,

Ted

0 Kudos
2 Replies
eeg3
Commander
Commander

If there isn't a need to have the ESXi host directly internet facing, I would say creating a VM and making that internet facing and then using the vSphere client from there would be a much more secure method.

Blog: http://blog.eeg3.net
Sma11T0wnITGuy
Contributor
Contributor

Thanks eeg3,

I'll probably either do that, or restrict the IP's that can connect through the Firewall Configuration.

Ted

0 Kudos