Custom TLS settings of the Fault Domain Manager (FDM) might not work on ESXi hosts
search cancel

Custom TLS settings of the Fault Domain Manager (FDM) might not work on ESXi hosts

book

Article ID: 423692

calendar_today

Updated On:

Products

VMware vCenter Server 8.0

Issue/Introduction

It's attempt to disable ciphers for the FDM port (TCP/8182) on ESXi follow the KB 320798.

But the disabled ciphers were still be detected by the security scanner.

The Custom TLS settings of the Fault Domain Manager (FDM) might not work on the on the following conditions:

  • The vCenter version is 8.0U3 or above.
  • The ESXi version is less than 8.0U3.

Environment

VMware vCenter 8.0U3

Resolution

This issue is resolved in the VMware ESXi 8.0 Update 3e (Build 24674464)

Additional Information

VMware ESXi 8.0 Update 3e Release Notes
https://techdocs.broadcom.com/us/en/vmware-cis/vsphere/vsphere/8-0/release-notes/esxi-update-and-patch-release-notes/vsphere-esxi-80u3e-release-notes.html

Disabling static ciphers for TLS in ESXi
https://knowledge.broadcom.com/external/article/320798/