cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1706
Views
1
Helpful
2
Replies

vmotion security

omahrez
Level 1
Level 1

Hi,

In order to secure my vmotion network, I need to hide the vmware port-profile in the drop down list in the vm nic properties, is this something feasible with nexus 1000v ? if so, what command line does the trick ?

I went through all Cisco documents regarding the port-security and other features, but I didn't see anything that could hide a port profile from a virtual machine nic properties drop down list.

I am a network/security admin, I don't give Sysadmin the permission to change network configuration in vCenter, except the ability to bind a vm nic properties to a specific port-profile. I want to hide vmotion and iscsi port-profiles to prevent Sysadmin guys to use them by mistake.

Any idea?

2 Replies 2

lwatta
Cisco Employee
Cisco Employee

Take a look at the following document https://communities.cisco.com/docs/DOC-20658

It should be possible to create a role and restrict a user tied to the role to only see particular port-profiles.


The example uses local accounts on the vCenter server but I would think it should work with AD or LDAP.

louis

great document, thanks a lot.

Review Cisco Networking for a $25 gift card