vCenter Appliance shell command logging capabilities
search cancel

vCenter Appliance shell command logging capabilities

book

Article ID: 424031

calendar_today

Updated On:

Products

VMware vCenter Server

Issue/Introduction

To determine whether vCenter Server supports logging of shell commands executed on the vCenter Appliance (VCSA) for security monitoring and alerting purposes, such as detecting or triggering alerts when specific commands are run.

By design, vCenter Server currently logs authentication-related events (for example, user logins) but does not capture or record the individual shell commands executed within the vCenter Appliance operating system.

Environment

vCenter 8.x
vCenter 9.x

Resolution

As of today, vCenter does not support out-of-the-box logging of shell command execution on the appliance. There is no configuration or setting available to enable this functionality.
As a next step, Please submit a VMware by Broadcom feature request. This will be reviewed internally and considered for inclusion in a future vCenter release.

Additional Information

Integrating vCenter Server with Aria Operations for Logs
Location of vCenter Server log files