6.7

Table Of Contents
2 Right-click the virtual machine and click Edit Settings.
3 Select VM Options.
4 Click Advanced and click Edit Configuration.
5 Click Add Row and type the following values in the Name and Value columns.
Column Value
Name
isolation.tools.setinfo.disable
Value
true
6 Click OK to close the Configuration Parameters dialog box, and click OK again.
Avoid Using Independent Nonpersistent Disks
When you use independent nonpersistent disks, successful attackers can remove any evidence that the
machine was compromised by shutting down or rebooting the system. Without a persistent record of
activity on a virtual machine, administrators might be unaware of an attack. Therefore, you should avoid
using independent nonpersistent disks.
Procedure
u
Ensure that virtual machine activity is logged remotely on a separate server, such as a syslog server
or equivalent Windows-based event collector.
If remote logging of events and activity is not configured for the guest, scsiX:Y.mode should be one of
the following settings:
n
Not present
n
Not set to independent nonpersistent
When nonpersistent mode is not enabled, you cannot roll a virtual machine back to a known state when
you reboot the system.
vSphere Security
VMware, Inc. 138