3.1 Ensure a centralized location is configured to collect ESXi host core dumps

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

The VMware vSphere Network Dump Collector service allows for collecting diagnostic information from a host that experiences a critical fault. This service provides a centralized location for collecting ESXi host core dumps.

Rationale:

When a host crashes, an analysis of the resultant core dump is essential to being able to identify the cause of the crash and determine a resolution. Installing a centralized dump collector helps ensure that core files are successfully saved and made available in the event an ESXi host should ever panic.

Solution

To implement the recommended configuration state, run the following ESXi shell commands:

# Configure remote Dump Collector Server
esxcli system coredump network set -v [VMK#] -i [DUMP_SERVER] -o [PORT]
# Enable remote Dump Collector
esxcli system coredump network set -e true

References:

http://kb.vmware.com/kb/1032051

See Also

https://workbench.cisecurity.org/files/2816

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-24, CSCv7|6.5

Plugin: Unix

Control ID: 8a129968efed0bc103e8cff5af01f743774ebd32f2ae0fdd3258a368c19a9492