3.1 ESXi

Video Activity
Join over 3 million cybersecurity professionals advancing their career
Sign up with
Required fields are marked with an *
or

Already have an account? Sign In »

Time
6 hours 28 minutes
Difficulty
Intermediate
CEU/CPE
7
Video Transcription
00:00
>> Welcome back to the Cybrary course
00:00
in building your Infosec lab,
00:00
I'm your host and instructor, Kevin Hernandez.
00:00
Up to this point in this course,
00:00
we have covered a broad scope of material.
00:00
We started by looking at
00:00
two different options for building our lab.
00:00
First, we look at a cold lab,
00:00
which consisted in having
00:00
the technologies installed in order to
00:00
familiarize yourself with the architecture
00:00
and configuration of the source.
00:00
This type of lab have the advantage of having
00:00
lower resource requirements
00:00
and having simpler configuration.
00:00
In the other hand, we also look at a live system.
00:00
This lab architecture will simulate tools
00:00
to our incorporate environments.
00:00
It will interconnect technologies while also provide
00:00
us with features such as VPN, network segmentation,
00:00
enhance security features offered
00:00
at corporate level such as firewalls,
00:00
web proxies, NPS to name a couple.
00:00
Not only that, but you will also be able
00:00
to keep a closer eye on what happens in
00:00
your network and your LAN via the utilization
00:00
of a security incident and event monitoring tool,
00:00
or SIEM for short.
00:00
These technologies I just mentioned
00:00
cover a great portion of our lab.
00:00
But we also look at options such as
00:00
pen testing operating system, for example,
00:00
Kali Linux as well a forensic based
00:00
systems such as SIFT and Autopsy.
00:00
All of these applications will
00:00
be installed in our virtual lab,
00:00
which will be hosted in
00:00
VMWare ESXi which is free of cost
00:00
>> for internal purposes.
00:00
>> In fact, most, if not all of our tools mentioned in
00:00
the lab will be free of
00:00
cost or at least it's base features will be.
00:00
Some of them will offer
00:00
premium features such as Untangle web proxy.
00:00
However, there are
00:00
several options for tools for you to pick.
00:00
Once we looked at the technologies
00:00
>> considered in our lab,
00:00
>> we started looking at the vendors that offer
00:00
products in those technologies,
00:00
and are like mentioned, free of charge.
00:00
Some of this include IPFire,
00:00
Untangle, and pfSense for our firewall technologies.
00:00
Which also included enhanced features covered
00:00
by our requirements of
00:00
IPS or intrusion prevention systems,
00:00
IDS, intrusion detection systems,
00:00
as well as web proxies such as Squid.
00:00
For SIEM, we looked
00:00
at different technologies and vendors,
00:00
such as IVMs curator,
00:00
OSSIM from AlienVault,
00:00
which is actually a part of AT&T,
00:00
and Splunk free, which is Splunk.
00:00
This require also some base operating systems
00:00
in order to be installed.
00:00
For example, curator requires CentOS version
00:00
7.5 in order for
00:00
it to be fully deployed in our environment.
00:00
Based on the tools we gather the hardware requirements,
00:00
we're also able to look
00:00
at how many resources were
00:00
required for us to build our lab.
00:00
We look at several options when building the lab,
00:00
such as buying a small form factor system
00:00
or [inaudible] from eBay.
00:00
For example we'll look at Dell,
00:00
we'll look at the bricks and Intel NUCs,
00:00
upgrading your current equipment by
00:00
installing more RAM or
00:00
buying a pre-built system from
00:00
manufacturers sold in by retailers.
00:00
You also have an option of building your own machine.
00:00
We include a small guide in order for
00:00
you to familiarize yourself with this highway.
00:00
You should be able to download it below.
00:00
This guide was created by one of
00:00
our TAs Robin and all credit should go to him.
00:00
We also learn about the VLANs and
00:00
smart switches and the benefit
00:00
these bring to our infrastructure.
00:00
We will show you one particular unit that I
00:00
personally purchase and installed to utilize in my lab.
00:00
Lastly, we'll start preparing
00:00
our hardware by formatting our drives and downloading
00:00
tools to facilitate the installation of
00:00
our software due to
00:00
the lack of physical drives in our system.
00:00
For example, we use a tool called Rufus,
00:00
which will assist us particular
00:00
in this first installation of ESXi.
00:00
We'll get to see the tool in action shortly.
00:00
Now in today's lesson,
00:00
we will download and install ESXi. Let's get to it.
00:00
Module 3, Lesson 1, installing ESXi.
00:00
Now in today's lesson,
00:00
we will discuss about getting ESXi.
00:00
Now when we talk about ESXi,
00:00
I'm referring to VMware's Hypervisor.
00:00
This is basically what I would like to call
00:00
a building block for different appliances.
00:00
What I'm trying to say is
00:00
that when it becomes harbor appliances,
00:00
if you're looking to have a one-to-one replication,
00:00
you will require a lot of hardware port in order to
00:00
properly replicate an enterprise level security
00:00
with different layers of security.
00:00
However, when you have
00:00
ESXi you can add multiple types of appliances.
00:00
This is like your network level IPS,
00:00
you can have your firewall,
00:00
you can have your SIEM,
00:00
your protection, your proxy,
00:00
all of those in one simple solution,
00:00
in one simple piece of hardware as
00:00
long as your hardware requirements are met.
00:00
What I'm trying to say is if you have
00:00
a system that requires a lot of resources, let's say,
00:00
such as SIEM and you're using a
00:00
repurpose hardware such as
00:00
a old laptop that only has four gigabytes of RAM.
00:00
Most likely, you will need to put
00:00
only that particular hardware appliance
00:00
in this old laptop.
00:00
You will not be able to put
00:00
more tools in one location that does not support it.
00:00
Again, if you're having a live system,
00:00
it will require probably
00:00
a lot of resource versus if you're
00:00
using a offline or cold lab,
00:00
then most likely you might be able to get away with it.
00:00
Now, let's quickly search for ESXi,
00:00
ESXi downloads here a storage.
00:00
Here you can see download
00:00
VMware vSphere Hypervisor for free.
00:00
Let's click on that. In this scenario,
00:00
I'm already logged in,
00:00
you won't be able to see my email hopefully for now.
00:00
But if I'm not careful enough,
00:00
>> you will see my license so I
00:00
>> need to make sure I write over that, and I did.
00:00
When you get here, you're
00:00
most likely come into here if you're not logged in.
00:00
You will see this little camcorder type of icons.
00:00
It's not an iPhone with a camera anymore.
00:00
If you click on them, you can actually have a four and
00:00
a half minute video on how
00:00
to install and configure this appliance.
00:00
Now in order to do this before
00:00
>> installing or going crazy,
00:00
>> you need to make sure you meet
00:00
the hardware requirements that are set in place.
00:00
This case, you can click on this little
00:00
window and you can,
00:00
for example, see here you
00:00
can pick your different options,
00:00
>> what type of appliance or hardware
00:00
utilizing in the CPU series.
00:00
Now, if you're not aware,
00:00
for example, you saw Unit 6.7 updating result.
00:00
You can see that most of these are server great CPUs.
00:00
I guess when you're using this at
00:00
our enterprise level that's most
00:00
likely what you end up with.
00:00
But I really doubt you'll have this,
00:00
and it's not really required. How do I know?
00:00
Because if you're very careful here
00:00
>> and you look around,
00:00
>> you can see different i3s,
00:00
i5s, and i7 processor from Intel.
00:00
If you're looking close into this,
00:00
you're going to see a 4700 from Intel.
00:00
Now I did a quick search on how old is the CPU.
00:00
If we look here, it's quarter to 2013.
00:00
We're looking at a CPU that's almost
00:00
six years old and is there in that list.
00:00
Now, that doesn't mean supports
00:00
the current version of IEXSi,
00:00
but is still means that it's considered at least
00:00
in some of these versions are still supported.
00:00
Taking that into consideration,
00:00
don't disqualify or discredit it,
00:00
any type of old resources
00:00
just because it's not the one you have.
00:00
Now, one thing you have to take into
00:00
consideration is that if you're down here,
00:00
you wouldn't see that you require
00:00
a CPU series based on the release.
00:00
But that's about it.
00:00
It says, you have 20 sockets,
00:00
20 cores for socket,
00:00
24 source I'm sorry.
00:00
But it doesn't tell you how much RAM,
00:00
how much storage, etc.
00:00
You will have to go into this page.
00:00
I will provide you that link,
00:00
to see how much exactly you need.
00:00
Now, this is for 5.0 apparently, if you look in here.
00:00
But in general, you have a very similar approach.
00:00
Now, from our RAM perspective,
00:00
you will search for RAM.
00:00
You can see that you require a minimum of
00:00
two gigs and a maximum of four,
00:00
or recommend eight gigs, I'm sorry.
00:00
When it comes to storage,
00:00
it doesn't really tell you how much it is,
00:00
but you'll go into
00:00
that when you actually download the ISO.
00:00
When it comes to CPU, it actually have
00:00
a 32-bit and a 64-bit,
00:00
and with at least two cores.
00:00
That way if you have a system that
00:00
has hyperthreading, a multicore processing,
00:00
then you know you can actually limit or
00:00
modify these parameters into
00:00
properly assigning the value that's required.
00:00
Now, let's go back to the installation site.
00:00
That's we go here. You can actually
00:00
go to license and download.
00:00
Right here you can manually download the application.
00:00
Now, right here, you see it's 311 megabytes.
00:00
To be generous, we're going to round that
00:00
up to the higher gigabyte.
00:00
We're going to actually give it a little more space in
00:00
order to properly document what we need.
00:00
Right here, I have an associate.
00:00
We're going to keep track of
00:00
how much hardware we're going to
00:00
need for each of these appliances.
00:00
Here we're going to go, type of the app, minimum RAM,
00:00
recommended RAM, storage, and solution.
00:00
We also are going to need CPU cores, give or take.
00:00
Now, for this application or appliance
00:00
ESXi, minimum RAM is two, recommend RAM was eight.
00:00
The storage, I said we're going to round it
00:00
up to the one above it.
00:00
Obviously this will grow us to
00:00
install more appliances into it.
00:00
The CPU cores is two.
00:00
Now this we want to save and keep
00:00
track as we look into further applications.
00:00
Now I have already downloaded the ESXi application,
00:00
we will be installing it shortly into our hardware.
00:00
The first thing we're going to do
00:00
is first to grab the USB,
00:00
where we put the ESXi image and plug it in
00:00
to the USB port in our system, as such.
00:00
This is required to be
00:00
done prior to booting up the system.
00:00
Once you boot up, you have to be
00:00
very careful and pay attention to
00:00
the boot option keys and
00:00
select a USB key from the selection.
00:00
If you pay attention to the bottom left
00:00
corner of your screen, you can see a countdown.
00:00
This is basically the USB being written.
00:00
After it finishes loading,
00:00
you'll be presented with the following screen.
00:00
Welcome VMware ESXi 6.7.0 installation.
00:00
VMware installs on most systems,
00:00
but only on those in
00:00
the compatibility guide are supported.
00:00
Then it provides you the link of such devices.
00:00
Afterwards, you will be the
00:00
>> end users license agreement.
00:00
>> Scroll down and you should be able to go through it.
00:00
It will start scanning for
00:00
the available hard drives
00:00
in order to perform the installation.
00:00
In this case, as you notice,
00:00
it doesn't take too long to identify.
00:00
Here itself, it's our hard drive at solid state,
00:00
that we're going to be utilizing.
00:00
Select it and continue the installation as such.
00:00
I had a prior installation to ESXi on my hard drive.
00:00
In my scenario, I will overwrite the installation.
00:00
However, in your case,
00:00
you will be presented only with the option to install.
00:00
Select your keyword layout,
00:00
and select your root password
00:00
and make sure you write it down somewhere.
00:00
This is actually the recent. I'm reinstalling it.
00:00
I forgot the password and I have to reinstall it.
00:00
Now let's go ahead with installation.
00:00
You should take a few minutes or so
00:00
>> in order to install.
00:00
>> Once installed, you'll be
00:00
presented with the following screen as seen.
00:00
Hit "Enter" to reboot the system as requested.
00:00
You will see a little screen, that will be
00:00
rebooting and make sure you
00:00
>> remove the USB at this step.
00:00
>> It will be not require anymore.
00:00
Here's the system rebooting.
00:00
You will see the little screen here
00:00
with the IPs and all that information.
00:00
You can see your computer model,
00:00
your CPU, your RAM,
00:00
and it will also show some services that it
00:00
has loaded. What have we learned today?
00:00
We basically utilize Rufus in order to
00:00
convert our ISO into a portable USB.
00:00
I utilize this USB in order to
00:00
install ESXi within our system.
00:00
We actually proceeded with the installation step
00:00
by step up to the point where it was completed.
00:00
In future lessons, we'll actually go
00:00
over the exercise dashboards
00:00
and we'll proceed in
00:00
getting familiarized with the operating systems.
00:00
Among those, we'll actually go ahead and activate ESXi,
00:00
which we'll cover in our next lesson.
00:00
Hope to see you soon. Have a great day.
Up Next