vCenter: vcenter-8.vami-firewall-restrict-access

Information

The vCenter Server must configure the firewall to only allow traffic from authorized networks. Ensures that all incoming and outgoing network traffic is blocked unless explicitly allowed, reducing the attack surface and helping to prevent unauthorized access to the system. Note that outgoing/egress traffic is not blocked, nor are related/established connections, so vCenter Server will still be able to communicate with systems where it initiates the connection. Perimeter firewalls should be used to curtail those types of connections.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

N/A

See Also

https://github.com/vmware/vcf-security-and-compliance-guidelines/raw/refs/heads/main/security-configuration-hardening-guide/vsphere/8.0/