VCenter Server fails Nexpose security because of the Open Access database analysis

I soaked a vCenter Server 5.5 as much as possible using Nessus and Nexpose scans, but are still two risks "severe."  one is

Database access-

The SqlExpress server that is responsible for VMWare is protected by Word, but Nexpose (PCI and DSS) don't allow databases be exposed through unlimited web access.

Is it possible to pass this Nexpose scan by limiting access to the database to a specific IP address, or another trick?

You can check if you have installed SQL Server Reporting Services (SSRS) on the same server as the database engine? If you install Reporting SERVICES on the same server as the database engine, Web services will open a hole in the layer of your security. Historically, the IIS and the Web have had a large number of vulnerabilities, allowing hackers to take control of the server, thus putting of whatever it is hosted on the server at risk. You can avoid this risk do not install Reporting SERVICES on the database server. best practice always do not install this service unless it is necessary.

Tags: VMware

Similar Questions

  • VMware vCenter Server service stops or restarts at the start of data collection

    VMware vCenter Server service stops or restarts at the start of data collection

    I am using vCenter Server 5.0

    Whenever I have begin to collect data, vcenter service stops or restarts, if I stop data collection and to disable the agent, vcenter service again and works well.

    Please any help!

    Thanks in advance

    It is a known issue, relating to the collection of historical data being enabled (nonzero) in the properties of the VMWare Agent on the Agent status screen.

    Change to 0 to disable/re-enable the agent and it should fix the problem.

    Please open a ticket of level 1 with telephone support if you need more help.

  • Installation of Adobe Acrobat DC (30 days trial) fails at halfway because of the error (without a digital ID) on a Mac (Intel Core) version 10.6.8 using Firefox

    Installation of Adobe Acrobat DC (30 days trial) fails at halfway because of the error (without a digital ID) on a Mac (Intel Core) version 10.6.8 using Firefox. Adobe troubleshoot inefficient. Any ideas?

    I don't think that should solve the problem, as it will not be installed on systems running Mac OS 10.9.

  • problems to install the latest plugin from vcenter server 5.0.0.149 on the vco 4.1.1 build 733.

    I have problems to install the latest plugin from vcenter server 5.0.0.149 on the generation of vco 4.1.1 733.

    If I go to the plugins tab I see vCenter Server 5.0.0.149 Installation OK

    I configured a host esx to vCenter Server tab, but as soon as I click on 'Apply' it starts to load forever.

    I tried to restart the server vco and vco configuration services, but the problem remains unchanged. In the server.log I couldn't find anything relevant, but it is still attatched

    Hello!

    Try increasing the memory for the configurator web-tool, as described in the release notes:

    http://www.VMware.com/support/Orchestrator/doc/vCenter-server-plugin-50-release-notes.html

    See you soon,.

    Joerg

  • Impossible to download Acrobat Pro because of the 'restrictive access privilege' on Mac

    I am unable to download Acrobat Pro because of the 'restrictive access privilege' on a Mac Mavericks folder ('Applications', where else?), but I left "Read & Write". I won't install anywhere else, so need help. Thank you.

    Mickey McFly please make sure you download your download folder or a different folder in addition to your Applications folder.  Once Adobe Acrobat is downloaded you can install the software in your Applications folder.

  • Exception occurred in the Microsoft Access database engine: the field is too small to accept the amount of data you attempted to add.

    Hello

    I try to save a path in a table in an access database, but an error occurs:

    "Exception occurred in the Microsoft Access database engine: the field is too small to accept the amount of data you attempted to add." Try insert or paste less data. "in create a NI_Database_API.lvlib:Rec - Command.vi-> NI_Database_API.lvlib:Cmd Execute.vi-> NI_Database_API.lvlibData.vi B tools insert-> project total.vi.

    I've attached a JPEG of a part of the code and the code, but it won't work because the database is not attached,

    any help please?

    Ok

    I solve the resized problem.i column size

    Thank you

  • A domain on the server vCenter Server installation causes vCenter Server fails to start

    Hi guru,.

    Well I tried for a while, to get my vCenter Server to work with my newly created domain name and at least i did not have much luck. It seems that every time that

    I have create a new domain and restart the system. For the VirtualCenter Server service fails to start on reboot. I checked my odbc connection and test works very well.

    I am able to log in microsoft management studio without problem. But still, the service does not start I understand I can meet here, it's probably a

    with my database permissions issue.  However I can't seem to find the answer by myself if I m hoping to hear some suggestions from all of you who help on this.

    Thanks for the replies!

    Sean

    Uh, you have not installed vCenter on the same server that is running your domain controller you have?

    ADAM and cannot run on the same machine AD.

    If it is installed on the same computer that your DC - get a new machine for VC - this configuration will never work. (minimum supported ram is 3 GB.)

    We see in the newspapers that ADAM is not from, and that's why VC fails to start as well.

    Failed to get all pages of search results: 0xa (a reference was returned by the server).

    Couldn't find OU = container of Instances.  This may indicate a problem with the LDAP permissions for the execution account VirtualCenter, or that the schema is not compatible with this version of VirtualCenter.

    Unable to run the search for the instance

  • When I installed the web client vsphere using vcenter server iso, encounted an error that the vcenter server signon administrateu use name and password is invalid

    VCenter server is version 5.1 and this server is a member of the working group.

    It comes to my administrator:

    03.jpg

    So, I used ISO server vcenter and installed web client pulg-in vsphere, it prompted:

    I've used many ways, but failed.

    usernme:admin@system-domain,

    so, I do not know how to solve, and I only know this administrator password.

    I'm not vCenter sign the only to have another admin, please help.

    02.jpg

    and another question: how install and configure the data via the vsphere 5.1 customer protection, vsphere isn't vsphere web client.

    You must provide credentials for the user admin@system-domain.

  • Problem with VCenter server on VM - how to upgrade the host

    Hello.

    I have VM on VCenter.

    I can't update the host with patches critical host because he can not enter maintenance mode.

    Is it possible to do this?

    Thank you

    Best practices so that a VC Server VM on a host of multi with SAN storage environment must be available for the use of compatible hardware for VMotion or VCA VMotion.  If you do not have an environment that allow VCA to then I would say that the best practice is to have the VC server on a physical server - it can even be installed on XP.

  • vCenter server from unit 5.5 after the migration from one host to another host

    Hello


    I had to migrate our VCenter Server Appliance VM (5.5 x) that uses the database into another ESXi host.

    Once the VM has moved successfully from one host to another, after the virtual machine restarts, I'm not able to connect to it.

    I get the following error: Client is not authenticated to the Service of the inventory of VMware - https://web-vcenter1:10443

    I searched and followed many articles KB including KB 2037952 with no luck. I refreshed the

    SSL certificates, etc. and ideas.


    Thank you

    Shiva

    Hi Ryan,

    I fixed all my issues in upgrading the VCSA to the latest version. Version 5.5.0 Build 2414847

    Other treatments VCSA had already been upgraded to this version and it worked very well.

    Thanks for help with ideas.

    PS: You were right - I log in as root and not as an administrator and this is why I did not see the SSO pages.

    -Shiva

  • Errors in the charge installing vcenter Server 5.5 with respect to the SQL database

    I do a new install of vCenter Server 5.5 on a new Windows 2008 R2 server. The database for this facility is pointing at a 32-bit Windows 2003 SP2 server. I installed SQL Native Client 10.0 on server vCenter Server 64-bit, and then I could make my DSN ODBC 64-bit connection. The vCenter Server install could very well recognize it, but after the installation got going he wrong on the database with the following error:

    Error 25003.Setup cannot create vCenter Server repository. The main reasons for this failure are:

    -The database is installed using insensitive case.

    -The database is remote and the client database version does not match the database version. If this problem continues to persist, see KB 1003960 for further assistance.

    Well, I know that the version of the client and the version of database do not match. SQL native client on the sql server is 9.00.5000.00 and the version on the server vCenter Server is 10.50.1600.1.

    I know that this version of vCenter is compatible with an installation of 32-bit sql server 2005 on a 32-bit server, 2003.

    I am not familiar too if they want upgrade me sql native client on the sql server, but is not compatible with the version of sql server on this server and there are several database for other applications on this server, so I don't want to jump into something like that.

    Any help would be greatly appreciated.

    Thank you.

    I install the native client SQL 2005 and give a shot.

  • JCA database adapter issue because of the dependence of database schema

    Hello

    I use the database JCA adapter to call a stored procedure. The adapter uses the schema of database name while calling the stored procedure. The schema name is added to the namespace XSD, wsdl files.
    If I have to use a different database schema name, how can I change the code without a lot of change.

    Thank you!

    You can change this property in the JCA file

  • Problem with insert/update statements on the MS Access database

    Hi all

    Before posting this question, I did a search and found this thread.

    I have the same problem as pawel had (in this thread), i.e. cannot insert or update data in the Access database. However, the reason is not that I am using some keywords in my domain name - it has been several years using SQL, some things are 'unwritten' rules But this is the first time I try something in LV

    However, after losing all day for work that I expect to do the same morning in 1 hour, try many different options and debugging until the level low in the Toolbox of data base screw (building or higher), I saw some weird SQL statement being trained in-house - so I tried what Troy has tried.

    "password" is a reserved word in the Jet.  I just looked at MOManagers_M, but by changing the field "password" to 'passworda', it does the job.

  • Error: database name not found and no default driver specified, installing a program and pay using the Microsoft access database.

    Original title: name not found and no data source driver by default specified

    Hi all, I tried to google search and try all methods that talk about the world. but I can't always solve this error for 1 week.
    I have install the program pays to computer A, and it works fine.
    But I install the same program to computer B, it gives me this error
    data source name not found and no driver specified default.
    the computer is windows 7 32 bit, and I did add the system DSN.
    It is using microsoft access database.

    does anyone have the solution for this?

    Thank you

    Hello

    The question you posted would be better suited for COMPUTING public Pro on TechNet. I would recommend posting your query in the TechNet Forums to get help:

    Office 2010 - IT Pro General Discussions TechNet Forums

    Let us know if you need help with Windows related issues. We will be happy to help you.

  • Set-VM the vCenter Server fails to decrypt the passwords stored in the customization specification error

    This error in executing the PowerCLI code below

    Environment

    5.5 b

    Using PowerCLI 5.5

    Do not use a custom certificate

    (1) tried to use passwords in clear text in the script (not my favorite)

    (2) tried to retype the password in the customization specifications (join the domain and local administrator options)

    (3) tried to use Get-Credential as stored creds

    (4) I don't know how to put the password in the XML file in clear text (not my favorite) - looking at it now.

    #Load PowerCLI a snap

    function LoadSnapin {}
    Param ($PSSnapinName)
    If (!) () Get-PSSnapin. where {$_.} Name - eq $PSSnapinName})) {}
    Add-pssnapin-name $PSSnapinName
    }
    }
    LoadSnapin - PSSnapinName 'VMware.VimAutomation.Core '.


    #Create VM
    $ParentVMName = "Parent2012r2VM".
    $vCenterHostName = 'vCenter.
    $vCenterUserName = "domain\user".
    $vCenterUserPassword = "Password"
    SE connect-VIServer-Server "vCenter' - User $vCenterUserName - password $vCenterUserPassword

    #$cred = get-Credential
    #connect-viserver-Server "vCenter" - Credential

    $cloneName = 'Server1 '.
    $sourceVM = get - VM $ParentVMName | Get-View
    $cloneFolder = $sourceVM.parent
    $cloneSpec = new-object Vmware.Vim.VirtualMachineCloneSpec
    $cloneSpec.Snapshot = $sourceVM.Snapshot.CurrentSnapshot
    $cloneSpec.Location = new-object Vmware.Vim.VirtualMachineRelocateSpec
    $cloneSpec.Location.DiskMoveType = [Vmware.Vim.VirtualMachineRelocateDiskMoveOptions]: createNewChildDiskBacking
    $sourceVM.CloneVM_Task ($cloneFolder, $cloneName, $cloneSpec)


    #Update temporary spec
    [string] $Domain = "Domain".
    [string] $DomainUserName = "user@domain".
    [string] $DomainPassword = "password"
    $Spec = get-OSCustomizationSpec "CustomSpec1" | New-OSCustomizationSpec-name "tmp01" - non-permanent Type | Game-OSCustomizationSpec-domain $Domain - DomainUsername $DomainUsername - DomainPassword $DomainPassword
    $Spec = get-OSCustomizationNicMapping-Spec $Spec | Game-OSCustomizationNicMapping - IPmode UseStaticIP - IPAddress 'x.x.x.x' - SubnetMask - DefaultGateway x.x.x.x - x.x.x.x DNS 'x.x.x.x', 'x.x.x.x '.
    $Spec = get-OSCustomizationSpec "tmp01".


    #Apply temporary spec
    $VM = get - VM "Server1."
    Get - VM $VM | Get-NetworkAdapter | Together-NetworkAdapter - PortGroup "PortGroup1" - confirm: $false | out-null
    #Errors on this line
    Get - VM $VM | Set-VM - OSCustomizationSpec $Spec - confirm: $false | Start-vm

    Disconnect-VIServer-Server "vCenter" - confirm: $false | out-null

    I gave up trying to clone an existing config a spec just dynamically created in memory, and applied.  It was a LOT easier and had no password problems.

Maybe you are looking for