Virtual Tarzan - Transformation Architect
  • Home
  • About
  • Contact me

Recent Comments

  • Pane on Cloud Chaos to Cloud Control: The Governance Playbook You Need Now
  • TJ on Cloud Chaos to Cloud Control: The Governance Playbook You Need Now
  • Mike A on Cloud Chaos to Cloud Control: The Governance Playbook You Need Now
  • Virtual Tarzan on Crafting an Effective Enterprise Multicloud Strategy
  • James on Crafting an Effective Enterprise Multicloud Strategy

Categories

  • AI-ML
  • Azure Architecture
  • Citrix
  • Cloud
  • Cloud Architecture
  • Cloud Security
  • Cloud Strategy
  • Compliance
  • Digital Transformation
  • EUC
  • General
  • Infrastructure Design & Architecture
  • IT Strategy
  • Networking
  • Storage
  • Troubleshooting
  • vCloud
  • VMware
  • vSphere

Archives

  • September 2024
  • July 2024
  • June 2024
  • March 2024
  • January 2024
  • October 2023
  • August 2023
  • July 2023
  • April 2023
  • February 2023
  • January 2023
  • September 2021
  • June 2021
  • January 2021
  • November 2020
  • July 2020
  • April 2020
  • March 2020
  • February 2020
  • January 2020
  • December 2019
  • November 2019
  • October 2019
  • September 2019
  • August 2019
  • July 2019
  • June 2019
  • May 2019
  • April 2019
  • March 2019
  • February 2019
  • January 2019
  • July 2018
  • April 2018
  • March 2018
  • February 2018
  • January 2018
  • December 2017
  • November 2017
  • October 2017
  • January 2017
  • October 2016
  • April 2016
  • March 2015
  • January 2015
  • November 2014
  • October 2014
  • September 2014
  • May 2014
  • April 2014
  • March 2014
  • February 2014
  • August 2013
  • March 2013
  • January 2013
  • December 2012
  • November 2012
  • October 2012
  • September 2012
  • August 2012
  • July 2012
  • June 2012
  • May 2012
  • April 2012
  • March 2012
  • February 2012
  • January 2012

Follow me

Virtual Tarzan - Transformation Architect
  • Home
  • About
  • Contact me
VMware, vSphere,

Network security

Among my friends who work in IT, one of them is the director of a medium-sized business that experienced a serious security breach. Through sniffers, a hacker managed to locate the vCenter through his slave user computer under his control. It was easy since the vCenter was on the same subnet as the compromised machine. Now a hacker in control of your vCenter is not a good thing! Things got worse, The hacker created a local admin account and logged into vCenter server as admin. Then did a simple vmotion from one host to another, so he/she intercepts the VMs as they start moving between hosts. Data on those VMs got compromised, be it confidential clients data, or financials.

This is what I call a bad day in the office.

The first glaring mistake that organisation made was having the servers on the same sub-net as the users computers!

My recommendation to my friend to prevent (or I should say minimize) the chance of this happening again is the following:

  • Have users computers and server farm on different sub-net with different physical switches. These two should never ever mix!
  • Implement  a combination of a layered defenses: firewall, anti-virus or intrusion detection system to protect the server farm.
  • Restrict access to management interfaces of your hosts (ILOs, VMkernerl ..).
  • Put our entire virtual infrastructure behind a firewall. This way you define who interacts with your virtual world.

There are other measure that can be taken but are outside the scope of this simple post. What is surprising is that many of the clients I have seen do not have any of these measures in place and are just waiting, for that hacker to waltz in.

So if you have not done so already, examine your security measures that you have in place. A security breach could be damaging to the brand name, pose a financial risk and even non compliance violations with all penalties associated with it. Not to mention it could be a CV generating event for those who end up getting the blame!

Just a word to the wise.

Thanks for reading.

Nick

Sharing is Caring!

Something went wrong with the twitter. Please check your credentials and twitter username in the twitter settings.

Previous

What is the difference between 99% and 99.999% uptime?

June 3, 2012
Next

vSphere basic design principles

August 5, 2012

Leave a Reply Cancel reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Related posts

Blackboard
Storage, VMware, vSphere,

SIMPLE calculation for sizing your VMware Datastore

EUC, Infrastructure Design & Architecture, VMware,

VMware Horizon’s View Graphics Rendering Types

VMware, vSphere,

The four ingredients of capacity planning

Troubleshooting, vCloud, VMware,

How to retrieve the contents of VM hard drives in vCloud?

VMware, vSphere,

vSphere basic design principles

VMware, vSphere,

VMware vs. Hyper-V

Recent Comments

  • Pane on Cloud Chaos to Cloud Control: The Governance Playbook You Need Now
  • TJ on Cloud Chaos to Cloud Control: The Governance Playbook You Need Now
  • Mike A on Cloud Chaos to Cloud Control: The Governance Playbook You Need Now
  • Virtual Tarzan on Crafting an Effective Enterprise Multicloud Strategy
  • James on Crafting an Effective Enterprise Multicloud Strategy

Categories

  • AI-ML
  • Azure Architecture
  • Citrix
  • Cloud
  • Cloud Architecture
  • Cloud Security
  • Cloud Strategy
  • Compliance
  • Digital Transformation
  • EUC
  • General
  • Infrastructure Design & Architecture
  • IT Strategy
  • Networking
  • Storage
  • Troubleshooting
  • vCloud
  • VMware
  • vSphere

Archives

  • September 2024
  • July 2024
  • June 2024
  • March 2024
  • January 2024
  • October 2023
  • August 2023
  • July 2023
  • April 2023
  • February 2023
  • January 2023
  • September 2021
  • June 2021
  • January 2021
  • November 2020
  • July 2020
  • April 2020
  • March 2020
  • February 2020
  • January 2020
  • December 2019
  • November 2019
  • October 2019
  • September 2019
  • August 2019
  • July 2019
  • June 2019
  • May 2019
  • April 2019
  • March 2019
  • February 2019
  • January 2019
  • July 2018
  • April 2018
  • March 2018
  • February 2018
  • January 2018
  • December 2017
  • November 2017
  • October 2017
  • January 2017
  • October 2016
  • April 2016
  • March 2015
  • January 2015
  • November 2014
  • October 2014
  • September 2014
  • May 2014
  • April 2014
  • March 2014
  • February 2014
  • August 2013
  • March 2013
  • January 2013
  • December 2012
  • November 2012
  • October 2012
  • September 2012
  • August 2012
  • July 2012
  • June 2012
  • May 2012
  • April 2012
  • March 2012
  • February 2012
  • January 2012

Follow me

  • Home
  • About
  • Contact me

© 2019 http://virtualtarzan.com. All rights reserved.