Chapter 7: vSphere Security Flashcards
What is the default approach to provisioning certificates in vSphere 7.0?
The VMware Certificate Authority (VMCA).
Describe the function of the VMware Endpoint Certificate Store (VECS).
To store custom certificates.
What term best describes the following?
“A service that serves as an identity source that handles SAML certificate management for authentication with vCenter SSO.”
The VMware Directory Service (vmdir).
Describe the function of the VMware Certificate Authority (VMCA).
To issue certificates for users and machines.
What core identity service must be used to store all vCenter certificates and keys?
The VMware Endpoint Certificate Store (VECS).
In regards to certificate requirements, what is the supported range for key size?
2048 to 16384 bits.
What PEM formats are supported by VMware?
PKCS8 & PKCS1.
What version of x509 is required to support certificates in vSphere?
Version 3.
What format of the certificate file is required in vSphere?
CRT format.
What keys must be available for vSphere certificates?
Digital signature and encipherment.
Are wildcard certificates supported by VMCA?
No.