NOS Hardening Guide? | Nutanix Community
Skip to main content
Solved

NOS Hardening Guide?

  • October 6, 2014
  • 2 replies
  • 1150 views

Forum|alt.badge.img+8
  • Adventurer
  • 3 replies
Hello,

is there a NOS Hardening Guide available?
two specific questions: is there a Firewall running on the CVM? can I install my own ssl certificate?

thx and best regards
Manfred

Best answer by tjagoda

Yes there is a firewall - the CentOS flavour of IPtables is running on your CVM's. As far as an official hardening guide goes I do not believe one exists, but if you fish through the discussion boards here you will find a few nuggets of wisdom. The most common recommendation is probably to isolate your CVM's from standard VM's on their own management network.

Also - you can install SSL Certificates through Prism, but if your question is specific to using SSL certs for SSH auth that may not be very helpful. I know that 2FA and key-based access is a component of Cluster Shield, but I'm uncertain if that reaches all the way to SSH.
View original
Did this topic help you find an answer to your question?
This topic has been closed for comments

2 replies

Forum|alt.badge.img+14
  • Trailblazer
  • 30 replies
  • Answer
  • October 6, 2014
Yes there is a firewall - the CentOS flavour of IPtables is running on your CVM's. As far as an official hardening guide goes I do not believe one exists, but if you fish through the discussion boards here you will find a few nuggets of wisdom. The most common recommendation is probably to isolate your CVM's from standard VM's on their own management network.

Also - you can install SSL Certificates through Prism, but if your question is specific to using SSL certs for SSH auth that may not be very helpful. I know that 2FA and key-based access is a component of Cluster Shield, but I'm uncertain if that reaches all the way to SSH.

Forum|alt.badge.img+8
  • Author
  • Adventurer
  • 3 replies
  • October 15, 2014
Thank you for the info!
best regards
Manfred