?
Solved

vpshere compliance checker

Posted on 2012-04-12
10
Medium Priority
?
453 Views
Last Modified: 2012-04-12
In your vmware expert opinions, the vpshere compliance checker seems to run about 30 checks per host. If you run the tool yourself:

a) in your opinion, are some of the issues more improtant than others? I know each company will have its own risk methodology, but as a general rule....

b) if you are willing, could you provide perhaps a top 10 list of which of the issues are higher risk, in your opinion, that would be very interesting to hear!

http://blogs.vmware.com/.a/6a00d8341c328153ef01538e505604970b-pi
http://www.wardvissers.nl/wp-upload/383d4168b518_146FE/image_3.png

It would help to group the non compliant issues into:
1) High risk - priority fixes
2) Medium risk - fix desirable - consider for future
3) Low risk - little benefit in fixing
0
Comment
Question by:pma111
  • 5
  • 5
10 Comments
 
LVL 124

Accepted Solution

by:
Andrew Hancock (VMware vExpert / EE MVE^2) earned 2000 total points
ID: 37837307
a). we regard ALL the checks that vSphere Complaince Checker performs as the Baseline Benchmark, and ALL our important.

b) For us and our clients the following are High Risk

1. HCN02
2. HCN04
3. HCM03
4. CON01
5. VMX10
6. VMX02
7. NCN11
8. NCN10
9. HST01
10. VMX11
0
 
LVL 3

Author Comment

by:pma111
ID: 37837309
It will be also interestng to see if the ticks go against your top 10's, as theres surely a reason some will have been set whilst others not set.
0
 
LVL 124
ID: 37837324
In our opinion and our clients, those 10 are high risk, and very easy to fix.
0
Put Machine Learning to Work--Protect Your Clients

Machine learning means Smarter Cybersecurity™ Solutions.
As technology continues to advance, managing and analyzing massive data sets just can’t be accomplished by humans alone. It requires huge amounts of memory and storage, as well as the high-speed power of the cloud.

 
LVL 3

Author Comment

by:pma111
ID: 37837344
Thanks for this. Do you strive for a fully compliant (all greens) vsphere report against your hosts/? Or do you still get a few red crosses?
0
 
LVL 124
ID: 37837403
To be compliant, ALL green.

Occassionally, a host may fail compliance, usually because of a support issue raised with VMware, which needs Tech Support Mode enabled for remote access.

But we do hope to maintain 100% compliance if possible.
0
 
LVL 3

Author Comment

by:pma111
ID: 37837406
One issue that did confuse me with that tool, for example you quote HCN04, our reports dont show HCN04. The numbering format doesnt seem to follow, i.e. it reports on HCN02, 05 and 06. But why not HCN01, HCN03, HCN04. Its almost like its missed off some checks for whatevber reason. Does it only run some checks against some versions of ESXi or something?
0
 
LVL 124
ID: 37837416
yes, ESX and ESXi, have different checks
0
 
LVL 3

Author Comment

by:pma111
ID: 37837425
So the report will just ignore ESX checks if its checking ESXi. So say check ABC1 was geared for ESX, if the scanners sees its scanning an ESXI host, it just ignores that check and leaves it out the report?
0
 
LVL 124
ID: 37837431
correct
0
 
LVL 3

Author Comment

by:pma111
ID: 37837451
Appreciate your help as ever! Cheers
0

Featured Post

Threat Trends for MSPs to Watch

See the findings.
Despite its humble beginnings, phishing has come a long way since those first crudely constructed emails. Today, phishing sites can appear and disappear in the length of a coffee break, and it takes more than a little know-how to keep your clients secure.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this article, I will show you HOW TO: Suppress Configuration Issues and Warnings Alert displayed in Summary status for ESXi 6.5 after enabling SSH or ESXi Shell.
In this article, I show you step by step with screenshots to assist you - HOW TO: Deploy and Install the VMware vCenter Server Appliance 6.5 (VCSA 6.5), with some helpful tips along the way.
In this video tutorial I show you the main steps to install and configure  a VMware ESXi6.0 server. The video has my comments as text on the screen and you can pause anytime when needed. Hope this will be helpful. Verify that your hardware and BIO…
This course is ideal for IT System Administrators working with VMware vSphere and its associated products in their company infrastructure. This course teaches you how to install and maintain this virtualization technology to store data, prevent vuln…
Suggested Courses

850 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question