Configure Security Settings on the vCenter Server Appliance

You configure a syslog server and configure backups for vCenter Server from the vCenter Server Appliance Management Interface.
  1. In a Web browser, log in to the vCenter Server Management Interface.​
    Setting
    Value
    URL
    https://
    /vcenter-server-fqdn
    :5480
    User name​
    administrator@vsphere.local​
  2. VMW-VC-01218
    Configure the appliance to send logs to a central log server.
    1. In the left pane, click
      Syslog
      .
    2. Click
      Configure
      , configure the address and port of a site-specific syslog aggregator or SIEM with the appropriate protocol, and click
      Save
      .
      UDP is discouraged due to it's stateless and unencrypted nature. TLS is recommended.
  3. VMW-VC-01220
    The vCenter Server configuration must be backed up on a regular basis.
    1. In the left pane, click
      Backup
      and click
      Configure
      or
      Edit
      for an existing configuration.
    2. Enter site-specific information for the backup job.
    3. Ensure that the schedule is set to
      Daily
      and click
      Create
      .
  4. In a Web browser, log in to the vCenter Server Management Interface.​
    Setting
    Value
    URL
    https://
    /vcenter-server-fqdn
    :5480
    User name​
    root
  5. VMW-VC-01255
    Ensure password expiration for the root user is correct.
    1. In the left pane, click
      Administration
      and click
      Edit
      under Password Expriation Settings.
    2. Set
      Password Validity (days)
      to 90 and
      Email for expiration warning
      to your own email address and click
      SAVE
      .
      Configure SMTP on vCenter Server to recieve the notification of expiration warning.