<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Sean Crookston &#187; vShield Zones</title>
	<atom:link href="http://www.seancrookston.com/blog/tag/vshield-zones/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.seancrookston.com/blog</link>
	<description></description>
	<lastBuildDate>Sat, 12 Jan 2013 19:46:25 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.4</generator>
		<item>
		<title>VCAP-DCA Objective 7.3 : Deploy and Administer vShield Zones</title>
		<link>http://www.seancrookston.com/blog/2010/08/30/vcap-dca-objective-7-3-deploy-and-administer-vshield-zones/</link>
		<comments>http://www.seancrookston.com/blog/2010/08/30/vcap-dca-objective-7-3-deploy-and-administer-vshield-zones/#comments</comments>
		<pubDate>Mon, 30 Aug 2010 18:59:02 +0000</pubDate>
		<dc:creator>Sean Crookston</dc:creator>
				<category><![CDATA[VCAP-DCA]]></category>
		<category><![CDATA[VMware]]></category>
		<category><![CDATA[vShield Zones]]></category>
		<category><![CDATA[vsphere]]></category>

		<guid isPermaLink="false">http://www.seancrookston.com/blog/?p=501</guid>
		<description><![CDATA[This topic is completely covered by going through the vShield Zones Administration Guide. To make this posting a bit cleaner I’ve simply referenced the page number to that guide for each of the objectives. Going forward I will do the same similarly for some of the topics where simply reading the manual is going to]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.seancrookston.com%2Fblog%2F2010%2F08%2F30%2Fvcap-dca-objective-7-3-deploy-and-administer-vshield-zones%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif&amp;style=normal&amp;service=bit.ly&amp;service_api=R_57d6cf2fc8c1624abad08d5dae8d1a39&amp;space=1&amp;hashtags=VCAP-DCA,VMware,vShield+Zones,vsphere&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<h4></h4>
<p>This topic is completely covered by going through the <a href="http://www.vmware.com/pdf/vsz_10_admin.pdf" target="_blank">vShield Zones Administration Guide</a>. To make this posting a bit cleaner I’ve simply referenced the page number to that guide for each of the objectives. Going forward I will do the same similarly for some of the topics where simply reading the manual is going to meet the objectives.</p>
<p>For a complete list of study objectives for the VCAP-DCA ( VDCA-410) browse to <a href="http://www.seancrookston.com/blog/vcap-dca/">http://www.seancrookston.com/blog/vcap-dca/</a>.</p>
<h4>Knowledge</h4>
<p><strong>Identify vShield Zones components</strong></p>
<p>VShield Zones consist of two main components</p>
<ul>
<li>vShield manager-management center for all distributed vShield instances. Provides monitoring, configuration, and software updating for your vShields.</li>
<li>vShield-The active security component of vShield zones. A vShield is installed on each ESX host you want to protect. It will monitor traffic between hosts as well as between virtual machines on the host.</li>
</ul>
<p><strong>Identify the four CLI command modes</strong></p>
<p>From the vShield Zones Administration Guide</p>
<ul>
<li><span style="text-decoration: underline;">Basic</span>: Basic mode is a read‐only mode. To have access to all commands, you must enter Privileged mode.</li>
<li><span style="text-decoration: underline;">Privileged</span>: Privileged mode commands allow support‐level options such as debugging and system diagnostics. Privileged mode configurations are not saved upon reboot. You must run the write memory command to save Privileged mode configurations.</li>
<li><span style="text-decoration: underline;">Configuration</span>: Configuration mode commands allow you to change the current configuration of utilities on a vShield Zones virtual machine. You can access Configuration mode from Privileged mode. From Configuration mode, you can enter Interface configuration mode.</li>
<li><span style="text-decoration: underline;">Interface Configuration</span>: Interface Configuration mode commands allow you to change the configuration of virtual machine interfaces. For example, you can change the IP address and IP route for the management port of the vShield Manager.</li>
</ul>
<h4>Skills and Abilities</h4>
<p><strong>Configure vShield Zones</strong></p>
<p><strong>Backup and restore vShield Manager Data</strong></p>
<p>pg 19-21</p>
<p><strong>Backup CLI Configuration</strong></p>
<p>pg 43-44</p>
<p><strong>Create/Delete Layer 2/3/4 firewall rules using VM Wall</strong></p>
<p>pg 48-50</p>
<p><strong>Install/Uninstall a vShield manually and from template</strong></p>
<p>pg 41</p>
<p><strong>Configure vShield Manager plug-in capability</strong></p>
<p>page 18</p>
<p><strong>Configure VM Flow charts</strong></p>
<p>pg 52-54</p>
<p><strong>Update vShield Zones</strong></p>
<p>pg 21-22</p>
<p><strong>Add/Edit/Delete User Accounts</strong></p>
<p>pg 23-25</p>
<p><strong>Assign rights to a user</strong></p>
<p>pg 24</p>
<p><strong>Add/Delete Application-Port Pair mapping</strong></p>
<p>pg 54-56</p>
<p><strong>Execute/Schedule Execution of virtual machine discovery</strong></p>
<p>pg 58-59</p>
<p><strong>Utilize vShield Zones CLI commands to configure and monitor vShield Zones</strong></p>
<p>pg 65</p>
<p><strong>Analyze traffic using VM Flow to determine root cause of network related issues </strong><br />
pg 51</p>
<h4>Tools</h4>
<p>vShield Zones QuickStart Guide<br />
vShield Zones Administration Guide<br />
Introduction to vShield Zones<br />
Product Documentation<br />
vShield Manager<br />
vShield CLI<br />
vSphere Client</p>
<h4>Other Relevant Reading Related To This Section</h4>
<h4></h4>
<p><a href="http://kendrickcoleman.com/index.php?/Tech-Blog/testing-out-vshield-zones.html">http://kendrickcoleman.com/index.php?/Tech-Blog/testing-out-vshield-zones.html</a></p>
<p><a href="http://searchvmware.techtarget.com/tip/0,289483,sid179_gci1363051_mem1,00.html">http://searchvmware.techtarget.com/tip/0,289483,sid179_gci1363051_mem1,00.html</a></p>
<p><a title="http://kb.vmware.com/selfservice/microsites/search.do?cmd=displayKC&amp;docType=kc&amp;externalId=1022536&amp;sliceId=1&amp;docTypeID=DT_KB_1_1&amp;dialogID=112324054&amp;stateId=1%200%20106992832" href="http://kb.vmware.com/selfservice/microsites/search.do?cmd=displayKC&amp;docType=kc&amp;externalId=1022536&amp;sliceId=1&amp;docTypeID=DT_KB_1_1&amp;dialogID=112324054&amp;stateId=1%200%20106992832">http://kb.vmware.com/selfservice/microsites/search.do?cmd=displayKC&amp;docType=kc&amp;externalId=1022536&amp;sliceId=1&amp;docTypeID=DT_KB_1_1&amp;dialogID=112324054&amp;stateId=1%200%20106992832</a></p>
<ul class="related_post"><li><a href="http://www.seancrookston.com/blog/2010/11/26/vscsistats/" title="vscsiStats">vscsiStats</a></li><li><a href="http://www.seancrookston.com/blog/2010/11/10/another-vcap-dca-post-2/" title="Another VCAP-DCA Post">Another VCAP-DCA Post</a></li><li><a href="http://www.seancrookston.com/blog/2010/11/07/vcap-dca-mock-lab-q6/" title="VCAP-DCA Mock Lab Q6">VCAP-DCA Mock Lab Q6</a></li><li><a href="http://www.seancrookston.com/blog/2010/11/03/vcap-dca-mock-lab-q4/" title="VCAP-DCA Mock Lab Q4">VCAP-DCA Mock Lab Q4</a></li><li><a href="http://www.seancrookston.com/blog/2010/11/02/vcap-dca-mock-lab-q3/" title="VCAP-DCA Mock Lab Q3">VCAP-DCA Mock Lab Q3</a></li><li><a href="http://www.seancrookston.com/blog/2010/11/01/vcap-dca-mock-lab-q2/" title="VCAP-DCA Mock Lab Q2">VCAP-DCA Mock Lab Q2</a></li><li><a href="http://www.seancrookston.com/blog/2010/10/29/vcap-dca-mock-lab-q1/" title="VCAP-DCA Mock Lab Q1">VCAP-DCA Mock Lab Q1</a></li><li><a href="http://www.seancrookston.com/blog/2010/10/28/another-vcap-dca-post/" title="Another VCAP-DCA Post">Another VCAP-DCA Post</a></li><li><a href="http://www.seancrookston.com/blog/2010/10/14/objective-9-3-configure-vcenter-server-linked-mode/" title="Objective 9.3 &ndash; Configure vCenter Server Linked Mode">Objective 9.3 &ndash; Configure vCenter Server Linked Mode</a></li><li><a href="http://www.seancrookston.com/blog/2010/10/12/objective-9-2-plan-and-execute-scripted-installations/" title="Objective 9.2 &ndash; Plan and Execute Scripted Installations">Objective 9.2 &ndash; Plan and Execute Scripted Installations</a></li></ul>]]></content:encoded>
			<wfw:commentRss>http://www.seancrookston.com/blog/2010/08/30/vcap-dca-objective-7-3-deploy-and-administer-vshield-zones/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
