Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Protecting ESXi Host with Server Protection

What is the recommended way to handle installing server protection on VMWare ESXi hosts? I currently have Server Protection installed on the VMs that the hosts are running, but would like to get it installed on the actually ESXi boxes themselves as well. 

I tried running the Linux server installer, but the BusyBox shell that ESXi uses doesn't know how to interpret the syntax of the script.

I did find this: https://support.sophos.com/support/s/article/KB-000036517?language=en_US

Is this the method i should be using to protect both the ESXi boxes and the VMs on them as well? Instead of installing directly to the windows server that is running on the VMs?



This thread was automatically locked due to age.
Parents
  • I found some guidance surrounding this topic in the following VMware article. 
    - Deployment of 3rd Party Agents and Anti-virus software on the ESXi Hypervisor (80768)

    The Sophos for Virtual Environments solution is ideal for environments where system resources are limited. However, it does not scan at the hypervisor level. The SVE deployment will only scan the neighbouring VMs on which the guest agent is installed. 

    Ensure that you have a network firewall to protect the network layer and that Sophos is installed on each of the VMs running within the ESXi host. For the highest level of protection, I recommend inquiring into MTR so that the environment will actively be monitored. This will give you a level of visibility into devices that may not be protected with Sophos. 

Reply
  • I found some guidance surrounding this topic in the following VMware article. 
    - Deployment of 3rd Party Agents and Anti-virus software on the ESXi Hypervisor (80768)

    The Sophos for Virtual Environments solution is ideal for environments where system resources are limited. However, it does not scan at the hypervisor level. The SVE deployment will only scan the neighbouring VMs on which the guest agent is installed. 

    Ensure that you have a network firewall to protect the network layer and that Sophos is installed on each of the VMs running within the ESXi host. For the highest level of protection, I recommend inquiring into MTR so that the environment will actively be monitored. This will give you a level of visibility into devices that may not be protected with Sophos. 

Children
No Data