How to harden Windows 2008 R2 Virtual Machine ?

Dear Experts,

One of our servers with Windows 2008 R2 Enterprise Edition runs on VmWare as a Virtual Machine. This server is an application server and connects to hundreds of systems transferring large amounts of data over network with FTP and Oracle SQLLOADER. We provided the best network environment by means of RAM, bandwidth, etc. However sometimes we face to bottlenecks.

Could you please provide me advanced tips and techniques to harden this server which has heavy network load?

BR
GurcanKAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Andrew Hancock (VMware vExpert / EE MVE^2)VMware and Virtualization ConsultantCommented:
I assume this is Windows Security Hardening ?

Turn on WIndows Firewall, and create rules for all your servers, you need to transfer data to and from.

There is a good guide here and list

https://wikis.utexas.edu/display/ISO/Windows+2008R2+Server+Hardening+Checklist

and Microsofts Baseline Guide here

http://technet.microsoft.com/en-us/library/cc526440.aspx
0
McKnifeCommented:
Sounds more like the need for performance monitoring to find bottlenecks.
"However sometimes we face to bottlenecks" - if you did face those, you should be able to describe them, I think.
-what was the bottleneck, when did it happen, how often does that happen?
->present process names, numbers (RAM load/storage load/network load)
->describe symptoms (what is expected vs. what is experienced) combined with numbers ("should take 5 seconds, but does take a minute", for example).
0
GurcanKAuthor Commented:
This is performance bootleneck. Sometimes FTP connections wait till timeout, or SQLLOADER waits forever.
0
Powerful Yet Easy-to-Use Network Monitoring

Identify excessive bandwidth utilization or unexpected application traffic with SolarWinds Bandwidth Analyzer Pack.

McKnifeCommented:
You offer no entry points yet. How could you expect profound help with so little information? :-)
->if it normally works, but only sometimes is slow/sometimes times out, you have to analyze and describe the surroundings in that error state as closely as possible.
Monitor the load (hard drive/CPU/RAM) in the error state - anything special to see?
Monitor the system with procmon - anything special happening during errors?
0
Andrew Hancock (VMware vExpert / EE MVE^2)VMware and Virtualization ConsultantCommented:
Are you using VMware vSphere (ESXi) to host the VM ?
0
GurcanKAuthor Commented:
Yes I'm using VMWare vSphere ESXi Host.
0
GurcanKAuthor Commented:
I examined Performance of server via CPU and Memory usage. Memory is in average %30 and CPU usage in average %88.
0
Andrew Hancock (VMware vExpert / EE MVE^2)VMware and Virtualization ConsultantCommented:
Okay, if you are using the E1000 interface for your VMs, this is WRONG!

and you need to replace it with the VMXNET3 interface, which is supported, and you must have VMware Tools installed.

This is a fully virtualised NIC, unlike the E1000 which is a legacy emulation designed for installation only in the OS.

There is also a tuning exercise you must also go through for the VMXNET3.

So do you have the E1000 installed ?
0
GurcanKAuthor Commented:
Yes it is E1000. This is good point. Thanks.
0
McKnifeCommented:
Another thing: "CPU usage in average %88" - you mean on average, really? That's high. And how is it when the errors occur? Did you try to add another virtual CPU, yet?
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Microsoft Legacy OS

From novice to tech pro — start learning today.