6.0.3

Table Of Contents
Procedure
1 Browse to the vCenter Server system in the vSphere Web Client object navigator.
2 Select the Manage tab, click , and click General.
3 Click Edit.
4 Click SSL .
5 If any of your ESXi 5.5 or earlier hosts require manual validation, compare the thumbprints listed for
the hosts to the thumbprints in the host console.
To obtain the host thumbprint, use the Direct Console User Interface (DCUI).
a Log in to the direct console and press F2 to access the System Customization menu.
b Select View Support Information.
The host thumbprint appears in the column on the right.
6 If the thumbprint matches, select the Verify check box next to the host.
Hosts that are not selected will be disconnected after you click OK.
7 Click OK.
Verify that SSL Certificate Validation Over Network File Copy Is
Enabled
Network File Copy (NFC) provides a le-type-aware FTP service for vSphere components. Starting with
vSphere 5.5, ESXi uses NFC for operations such as copying and moving data between datastores by default,
but you might have to enable it if it is disabled.
When SSL over NFC is enabled, connections between vSphere components over NFC are secure. This
connection can help prevent man-in-the-middle aacks within a data center.
Because using NFC over SSL causes some performance degradation, you might consider disabling this
advanced seing in some development environments.
N Set this value to true explicitly if you are using scripts to check the value.
Procedure
1 Connect to the vCenter Server with the vSphere Web Client.
2 Select the  tab, and click Advanced .
3 Click Edit.
4 At the boom of the dialog, enter the following Key and Value.
Field Value
Key
cong.nfc.useSSL
Value
true
5 Click OK.
vSphere Security
214 VMware, Inc.