6.0.3

Table Of Contents
T
tag object permissions 146
tags, privileges 267
tasks, privileges 271
TCP ports 215
templates, host security 219
terms and conditions 45
third-party CA 113
third-party certificates 112
third-party root certificate 101, 111, 117
third-party software support policy 17
thumbprint certificates 162
thumbprints, hosts 213
time synchronization
NTP-based 249
VMware Tools-based 248
time synchronization settings 248
timeout, ESXi Shell 203, 204
timeout for ESXi Shell availability 204
timeouts
ESXi Shell 202
setting 202
token policy, Single Sign-On 53
trusted root certificate 81
TRUSTED_ROOTS 170
two-factor authentication 36
U
UDP ports 215
understanding passwords 16
understanding Single Sign-On 20
unexposed features, disable 222
updated information 9
updating trusts 115
user management 135
user permissions, vpxuser 188
user account locked, SSO fails 62
user directory timeout 144
user repositories for vCenter Single Sign-On 29
users
adding local 55
disabling Single Sign-On 55
editing Single Sign-On 56
remove from group 58
searching 144
users and groups 58
users and permissions 135
UserVars.ActiveDirectoryVerifyCAMCertifcate
194
V
vApps, privileges 284
variable information size for guest operating
systems
disabling 225
limiting 225
vCenter Server
connecting through firewall 230
firewall ports 229
privileges 209
vCenter Inventory Service
privileges 267
tagging 267
vCenter Lookup Service 22
vCenter Server security 209, 212
vCenter Server Appliance
adding NTP servers 249
NTP-based time synchronization 249
security best practices 213
time synchronization settings 248
unable to log in 61
VMware Tools-based time
synchronization 248
vCenter Server administrator user, setting 22
vCenter Server Host OS, hardening 211
vCenter Server security best practices 209
vCenter Sever Appliance, replacing NTP
servers 249
vCenter Single Sign-On
Active Directory 31, 34
changing password 59
domains 30
identity sources 29, 31, 34
LDAP 31, 34
locked users 52
OpenLDAP 31, 34
password policy 51
security token service (STS) 50
user repositories 29
vCenter Single Sign-On best practices 59
VECS 72
vecs-cli, certificate replacement 46
VGA-Only Mode 222
VGT 236
view certificates 133
vifs, uploading certificates and keys 200
virtual disks, shrinking 218
virtual guest tagging 236
virtual machine console, host security 220
virtual machine security
best practices 218
disable features 222
VMX parameters 222
Index
VMware, Inc. 293