vCenter : monitor-admin-assignment

Information

Monitor that administrative users are only assigned privileges they require. Least Privilege requires that these privileges should only be assigned if needed, to reduce risk of confidentiality, availability or integrity loss. At an interval suitable to industry best practices or your organization's standards, verify in vCenter Server using the vSphere Client: 1. That a non-guest access role was created without these privileges. 2. This role is assigned to users who need administrator privileges excluding those allowing file and program interaction within the guests.

See Also

https://www.vmware.com/files/xls/hardeningguide-vsphere5-5-ga-released.xlsx