Configure Security Settings on the vCenter Server Appliance
You configure a syslog server and configure backups for vCenter Server from the vCenter Server Appliance Management Interface.
- In a Web browser, log in to the vCenter Server Management Interface.SettingValueURLhttps:///vcenter-server-fqdn:5480User nameadministrator@vsphere.local
- VMW-VC-01218Configure the appliance to send logs to a central log server.
- In the left pane, clickSyslog.
- ClickConfigure, configure the address and port of a site-specific syslog aggregator or SIEM with the appropriate protocol, and clickSave.UDP is discouraged due to it's stateless and unencrypted nature. TLS is recommended.
- VMW-VC-01220The vCenter Server configuration must be backed up on a regular basis.
- In the left pane, clickBackupand clickConfigureorEditfor an existing configuration.
- Enter site-specific information for the backup job.
- Ensure that the schedule is set toDailyand clickCreate.
- In a Web browser, log in to the vCenter Server Management Interface.SettingValueURLhttps:///vcenter-server-fqdn:5480User nameroot
- VMW-VC-01255Ensure password expiration for the root user is correct.
- In the left pane, clickAdministrationand clickEditunder Password Expriation Settings.
- SetPassword Validity (days)to 90 andEmail for expiration warningto your own email address and clickSAVE.Configure SMTP on vCenter Server to recieve the notification of expiration warning.