Security scanner flags ESXi port 2380 for using a self-signed certificate.
search cancel

Security scanner flags ESXi port 2380 for using a self-signed certificate.

book

Article ID: 414403

calendar_today

Updated On:

Products

VMware vSphere ESXi

Issue/Introduction

A security scanner reports that port 2380 is using a self-signed certificate on ESXi.

Environment

ESXi 8.0

Cause

The 2380 connection is used for direct communication between the 3 Etcd instances that form the ClusterStore.

Resolution

The certificate seen on port 2380 is self-signed by design and is used only for internal communication between the three Etcd instances that are selected to serve as ClusterStore replicas.

Additional Information