vCenter: vcenter-8.tls-profile

Information

The vCenter Server must maintain confidentiality and integrity of transmissions by enabling modern TLS ciphers. In vCenter Server 8.0.3 and newer, TLS profiles are available to configure client and server TLS settings to use only strong ciphers. To view the current settings, in the vSphere Client go to Developer Center, then to API Explorer. Select "appliance" from the "Select API" drop down list then scroll down to the "tls/profiles/global" section. Expand the GET call and click Execute. The vCenter Server will restart services after setting this parameter, disconnecting clients.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

N/A (Use API Explorer method in Discussion)

See Also

https://github.com/vmware/vcf-security-and-compliance-guidelines/raw/refs/heads/main/security-configuration-hardening-guide/vsphere/8.0/