6.7

Table Of Contents
Securing vSphere Networking 10
Securing vSphere Networking is an essential part of protecting your environment. You secure different
vSphere components in different ways. See the vSphere Networking documentation for detailed
information about networking in the vSphere environment.
This chapter includes the following topics:
n
Introduction to vSphere Network Security
n
Securing the Network With Firewalls
n
Secure the Physical Switch
n
Securing Standard Switch Ports with Security Policies
n
Securing vSphere Standard Switches
n
Standard Switch Protection and VLANs
n
Secure vSphere Distributed Switches and Distributed Port Groups
n
Securing Virtual Machines with VLANs
n
Creating Multiple Networks Within a Single ESXi Host
n
Internet Protocol Security
n
Ensure Proper SNMP Configuration
n
vSphere Networking Security Best Practices
Introduction to vSphere Network Security
Network security in the vSphere environment shares many characteristics of securing a physical network
environment, but also includes some characteristics that apply only to virtual machines.
Firewalls
Add firewall protection to your virtual network by installing and configuring host-based firewalls on some
or all its VMs.
For efficiency, you can set up private virtual machine Ethernet networks or virtual networks. With virtual
networks, you install a host-based firewall on a VM at the head of the virtual network. This firewall serves
as a protective buffer between the physical network adapter and the remaining VMs in the virtual network.
VMware, Inc.
192