![VMware VSHIELD APP 1.0 - Скачать руководство пользователя страница 15](http://html1.mh-extra.com/html/vmware/vshield-app-1-0/vshield-app-1-0_admin-manual_1043347015.webp)
VMware, Inc.
15
Chapter 1 Overview of vShield
vShield Endpoint
vShield
Endpoint
delivers
an
introspection
‐
based
antivirus
solution.
vShield
Endpoint
uses
the
hypervisor
to
scan
guest
virtual
machines
from
the
outside
without
a
bulky
agent.
vShield
Endpoint
is
efficient
in
avoiding
resource
bottlenecks
while
optimizing
memory
use.
vShield
Endpoint
installs
as
a
hypervisor
module
and
security
virtual
appliance
from
a
third
‐
party
antivirus
vendor
(VMware
partners)
on
an
ESX
host.
vShield
Endpoint
provides
the
following
features:
On
‐
demand
file
scanning
in
a
service
virtual
machine.
On
‐
access
file
scanning
in
a
service
virtual
machine.
Migration of vShield Components
The
vShield
Manager
and
vShield
Edge
virtual
appliances
can
be
automatically
or
manually
migrated
based
on
DRS
and
HA
policies.
The
vShield
Manager
must
always
be
up,
so
you
must
migrate
the
vShield
Manager
whenever
the
current
ESX
host
undergoes
a
reboot
or
maintenance
mode
routine.
Each
vShield
Edge
should
move
with
its
secured
port
group
to
maintain
security
settings
and
services.
vShield
App
and
Port
Group
Isolation
services
cannot
be
moved
to
another
ESX
host.
If
the
ESX
host
on
which
these
services
reside
requires
a
manual
maintenance
mode
operation,
you
must
de
‐
select
the
Move
powered
off
and
suspended
virtual
machines
to
other
hosts
in
the
cluster
check
box
to
ensure
these
virtual
appliances
are
not
migrated.
These
services
restart
after
the
ESX
host
comes
online.
VMware Tools
Each
vShield
virtual
appliance
includes
VMware
Tools.
Do
not
upgrade
or
uninstall
the
version
of
VMware
Tools
included
with
a
vShield
virtual
appliance.
Ports Required for vShield Communication
The
vShield
Manager
requires
the
following
ports
to
be
open:
REST
API:
80/TCP
and
443/TCP
Graphical
User
Interface:
80/TCP
to
443/TCP
and
initiates
connections
to
vSphere
vCenter
SDK.
SSH
access
to
the
CLI
(not
enabled
by
default):
22/TCP
N
OTE
You
must
obtain
an
evaluation
or
full
license
to
use
vShield
Endpoint.
Содержание VSHIELD APP 1.0 -
Страница 11: ...VMware Inc 11 vShield Manager and vShield Zones...
Страница 12: ...vShield Administration Guide 12 VMware Inc...
Страница 16: ...vShield Administration Guide 16 VMware Inc...
Страница 20: ...vShield Administration Guide 20 VMware Inc...
Страница 26: ...vShield Administration Guide 26 VMware Inc...
Страница 36: ...vShield Administration Guide 36 VMware Inc...
Страница 44: ...vShield Administration Guide 44 VMware Inc...
Страница 48: ...vShield Administration Guide 48 VMware Inc...
Страница 49: ...VMware Inc 49 vShield Edge and Port Group Isolation...
Страница 50: ...vShield Administration Guide 50 VMware Inc...
Страница 60: ...vShield Administration Guide 60 VMware Inc...
Страница 61: ...VMware Inc 61 vShield App and vShield Endpoint...
Страница 62: ...vShield Administration Guide 62 VMware Inc...
Страница 66: ...vShield Administration Guide 66 VMware Inc...
Страница 72: ...vShield Administration Guide 72 VMware Inc...
Страница 80: ...vShield Administration Guide 80 VMware Inc...
Страница 87: ...VMware Inc 87 Appendixes...
Страница 88: ...vShield Administration Guide 88 VMware Inc...
Страница 132: ...vShield Administration Guide 132 VMware Inc...
Страница 146: ...vShield Administration Guide 146 VMware Inc...