
VMware, Inc. 61
11
vShieldAppisaninterior,vNIC‐levelfirewallthatallowsyoutocreateaccesscontrolpoliciesregardlessof
networktopology.AvShieldAppmonitorsalltrafficinandoutofanESXhost,includingbetweenvirtual
machinesinthesameportgroup.vShieldAppincludestrafficanalysisandcontainer‐basedpolicy
creation.
vShieldAppinstallsasahypervisormoduleandfirewallservicevirtualappliance.vShieldAppintegrates
withESXhoststhroughVMsafeAPIsandworkswithVMwarevSphereplatformfeaturessuchasDRS,
vMotion,DPM,andmaintenancemode.
vShieldAppprovidesfirewallingbetweenvirtualmachinesbyplacingafirewallfilteronevery
virtual
networkadapter.Thefirewallfilteroperatestransparentlyanddoesnotrequirenetw orkchangesor
modificationofIPaddressestocreatesecurityzones.YoucanwriteaccessrulesbyusingvCentercontainers,
likedatacenters,cluster,resourcepoolsandvApps,ornetworkobjects,likePortGroupsandVLANs,to
reducethenumber
offirewallrulesandmaketheruleseasiertotrack.
YoucanmonitorthehealthofvShieldAppinstancesbyusingthevShieldManageruserinterfaceandby
sendingvShieldAppsystemeventstoasyslogserver.
Thischapterincludesthefollowingtopics:
“SendvShieldAppSystemEventstoaSyslogServ er”onpage 61
“BackUptheRunningCLIConfigurationofavShieldApp”onpage 62
“ViewtheCurrentSystemStatusofavShieldApp”onpage 62
Send vShield App System Events to a Syslog Server
YoucansendvShieldAppsystemeventstoasyslogserver.
To send vShield App system events to a syslog server
1LogintothevShieldManageruserinterface.
2 SelectavShieldAppfromtheinventorypanel.
3ClicktheConfigurationtab.
4ClickSyslogServers.
5TypetheIPaddressofthesyslogserver.
6FromtheLogLeveldrop‐downmenu,selecttheeventlevelatandabovewhichtosendvShieldApp
eventstothesyslogserver.
Forexample,ifyouselectEmergency,thenonlyemergency‐leveleventsaresenttothesyslogserver.If
youselectCritical,thencritical‐,alert‐,andemergency‐leveleventsaresenttothesyslogserver.
7Click
Addtosavenewsettings.YousendvShieldAppeventstouptofivesysloginstances.
vShield App Management
11
Komentáře k této Příručce