Chapter 2. ESXi Host Security

In this chapter, we will cover the following recipes:

  • Hardening the host via Console
  • Hardening the host via vSphere Client
  • Configuring host services
  • Configuring the host firewall

Introduction

Securing the hypervisor platform is critical for building a secure virtualization infrastructure. VMware has made substantial progress in reducing the threat surface of the ESX hypervisor. Beginning with Version 4.0, the traditional ESX hypervisor was joined by the ESXi version of the hypervisor. The ESX version of the hypervisor had a larger footprint and a greater threat profile. ESXi versus ESX is similar to Windows Server Core versus the full version of Windows Server.

Starting with vSphere 5.0, the ESXi hypervisor replaced the ...

Get VMware vSphere Security Cookbook now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.