vShield Administration GuidevShield Manager 4.1.0 Update 1vShield Zones 4.1.0 Update 1vShield Edge 1.0.0 Update 1vShield App 1.0.0 Update 1vShield En
vShield Administration Guide10 VMware, Inc. Support OfferingsTofindouthowVMwaresupportofferingscanhelpmeetyourbusinessneeds,gotohttp://
vShield Administration Guide100 VMware, Inc. Syntax[no] ip name server A.B.C.DCLI ModeConfigurationExamplevShield(config)# ip name server 192.168.1.3o
VMware, Inc. 101Appendix A Command Line Interface CLI ModePrivilegedUsage GuidelinesvShieldAppCLIExamplevShield# manager key abc123Related Commandss
vShield Administration Guide102 VMware, Inc. Syntaxset clock HH:MM:SS MM DD YYYYCLI ModePrivilegedExamplevShield(config)# set clock 00:00:00 08 28 200
VMware, Inc. 103Appendix A Command Line Interface CLI ModeConfigurationUsage GuidelinesStartingtheSSHserviceandenablingCLIaccessviaSSH(cli s
vShield Administration Guide104 VMware, Inc. Related Commandswritememorywrite eraseResetstheCLIconfigurationtofactorydefaultsettings.Syntaxwri
VMware, Inc. 105Appendix A Command Line Interface Usage GuidelinesvShieldAppCLIExamplevShield# debug copy ftp 192.168.1.1 tcpdumps allRelated Comman
vShield Administration Guide106 VMware, Inc. SyntaxvShieldApp[no] debug packet display interface (mgmt | u0 | p0) [EXPRESSION]vShieldEdge[no] debug
VMware, Inc. 107Appendix A Command Line Interface Related Commandsdebugcopydebugpacketcapturedebugshowfilesdebug serviceEnablesloggingforaser
vShield Administration Guide108 VMware, Inc. CLI ModePrivilegedUsage GuidelinesvShieldAppCLI.Asourceordestinationvalueof0.0.0.0/0:0matchesa
VMware, Inc. 109Appendix A Command Line Interface Show Commandsshow alertsShowssystemalertsastheyrelatetotheprotocoldecodersornetworkevent
VMware, Inc. 11 vShield Manager and vShield Zones
vShield Administration Guide110 VMware, Inc. Related Commandsntpserversetclockshow configurationShowseitherthecurrentglobalconfigurationorthe
VMware, Inc. 111Appendix A Command Line Interface show ethernetShowsEthernetinformationforvirtualmachineinterfaces.Syntaxshow ethernetCLI ModeBa
vShield Administration Guide112 VMware, Inc. Proxy Id = 2, Service Name = vproxy-forward-allow, Num Threads = 0 ACTION=VPROXYProxy Id = 3, Service Nam
VMware, Inc. 113Appendix A Command Line Interface Syntaxshow interface [mgmt | p0 | u0]CLI ModeBasic,PrivilegedExamplemanager# show interface mgmtInt
vShield Administration Guide114 VMware, Inc. ExamplevShield# show ip routeCodes: K - kernel route, C - connected, S - static, > - selected ro
VMware, Inc. 115Appendix A Command Line Interface show kernel message lastShowslastnkernelmessagesforavShieldEdge.Syntaxshow kernel message la
vShield Administration Guide116 VMware, Inc. CLI ModeBasic,PrivilegedUsage GuidelinesvShieldAppCLIExamplevShield# show log alertsRelated Commandssh
VMware, Inc. 117Appendix A Command Line Interface show manager logShowsthesystemlogofthevShieldManager.Syntaxshow manager log [follow | reverse
vShield Administration Guide118 VMware, Inc. Syntaxshow ntpCLI ModeBasic,PrivilegedUsage GuidelinesvShieldManagerCLIExamplemanager# show ntpNTP se
VMware, Inc. 119Appendix A Command Line Interface Syntaxshow running-configCLI ModeBasic,PrivilegedExamplevShield# show running-configBuilding config
vShield Administration Guide12 VMware, Inc.
vShield Administration Guide120 VMware, Inc. show servicesShowstheservicesprotectedbyavShieldApp.Syntaxshow servicesCLI ModeBasic,PrivilegedUs
VMware, Inc. 121Appendix A Command Line Interface show session-manager sessionsShowsthecurrentsessionsinprocessonavShieldApp.Syntaxshow sessi
vShield Administration Guide122 VMware, Inc. show startup-configShowsthestartupconfiguration.Syntaxshow startup-configCLI ModeBasic,PrivilegedExam
VMware, Inc. 123Appendix A Command Line Interface show system loadShowstheaverageprocessingloadonavShieldEdge.Syntaxshow system memoryCLI Mode
vShield Administration Guide124 VMware, Inc. CLI ModeBasic,PrivilegedUsage GuidelinesvShieldEdgeCLIExamplevShield# show system storageshow system u
VMware, Inc. 125Appendix A Command Line Interface ExamplevShield# show vmwall logRelated Commandsshowvmwallrulesshow vmwall rulesShowsthefirewall
vShield Administration Guide126 VMware, Inc. CLI ModeInterfaceConfigurationExamplevShield(config-if)# link-detectorvShield(config-if)# no link-detect
VMware, Inc. 127Appendix A Command Line Interface show tech supportShowsthesystemdiagnosticlogthatcanbesenttotechnicalsupportbyrunningth
vShield Administration Guide128 VMware, Inc. tracerouteTracestheroutetoadestination.Syntaxtraceroute (HOSTNAME | A.B.C.D)CLI ModeBasic,Privilege
VMware, Inc. 129Appendix A Command Line Interface userAddsaCLIuseraccount.Theuseradministhedefaultuseraccount.TheCLIadminaccountandp
VMware, Inc. 13 1VMware®vShieldisasuiteofsecurityvirtualappliancesbuiltforVMwarevCenter™ServerandVmwareESX™integration.vShieldisa
vShield Administration Guide130 VMware, Inc. Terminal Commandsclear vtyClearsallotherVTYconnectionstotheCLI.Syntaxclear vtyCLI ModePrivilegedEx
VMware, Inc. 131Appendix A Command Line Interface Syntaxterminal no lengthCLI ModePrivilegedExamplemanager# terminal no lengthRelated Commandsresetter
vShield Administration Guide132 VMware, Inc.
VMware, Inc. 133 BThisappendixcontainsconfigurationexamplesforabasicpoint‐to‐pointIPSECVPNconnectionbetweenavShieldEdgeandaCiscoor
vShield Administration Guide134 VMware, Inc. TerminologyIPSecisaframeworkofopenstandards.TherearemanytechnicaltermsinthelogsofthevShi
VMware, Inc. 135Appendix B vShield Edge VPN Configuration Examples Phase 1: Main Mode TransactionsThefollowingtransactionsoccurinsequencebetween
vShield Administration Guide136 VMware, Inc. 4ClicktheVPNlink.5TypeanExternalIPAddressfortheVPNserviceonthevShieldEdge.6TypetheNATed
VMware, Inc. 137Appendix B vShield Edge VPN Configuration Examples 4 Double]clicktheRemoteSiteSubnetcellandentertheIPaddressinCIDRformat
vShield Administration Guide138 VMware, Inc. Router(config-isakmp)# authentication pre-shareRouter(config-isakmp)# exitMatch Each Peer with Its Pre-Sh
VMware, Inc. 139Appendix B vShield Edge VPN Configuration Examples resource policy!ip subnet-zero!ip cefno ip dhcp use vrf connected!!no ip ips deny-a
vShield Administration Guide14 VMware, Inc. vShield EdgevShieldEdgeprovidesnetworkedgesecurityandgatewayservicestoisolatethevirtualmachin
vShield Administration Guide140 VMware, Inc. enable password 2KFQnbNIdI.2KYOU encryptedpasswd 2KFQnbNIdI.2KYOU encryptednames!interface Ethernet0/0 na
VMware, Inc. 141Appendix B vShield Edge VPN Configuration Examples crypto map MYVPN interface untrustedcrypto isakmp enable untrustedcrypto isakmp pol
vShield Administration Guide142 VMware, Inc. 000 #1: "s1-c1":500 STATE_MAIN_I4 (ISAKMP SA established); EVENT_SA_REPLACE in 27623s; newest I
VMware, Inc. 143Appendix B vShield Edge VPN Configuration Examples Phase 2 Not MatchingvShield EdgevShieldEdgehangsatSTATE_QUICK_I1.Alogmessage
vShield Administration Guide144 VMware, Inc. Cisco<BS>Aug 26 19:00:26 [IKEv1 DEBUG]: Group = 10.20.129.80, IP = 10.20.129.80, sending delete/del
VMware, Inc. 145Appendix B vShield Edge VPN Configuration Examples Version: 1.0 Exchange type: Identity Protection (Main Mode) (2) Flags: 0x
vShield Administration Guide146 VMware, Inc. Domain of interpretation: IPSEC (1) Situation: IDENTITY (1) Proposal payload # 1
VMware, Inc. 147Appendix B vShield Edge VPN Configuration Examples Key Exchange payload Next payload: Nonce (10) Payload length: 132
vShield Administration Guide148 VMware, Inc. Internet Protocol, Src: 10.20.129.80 (10.20.129.80), Dst: 10.20.131.62 (10.20.131.62)User Datagram Protoc
VMware, Inc. 149 CThissectionguidesyouthroughtroubleshootingcommonvShieldissues.Thisappendixcoversthefollowingtopics: “Troubleshootingv
VMware, Inc. 15Chapter 1 Overview of vShield vShield EndpointvShieldEndpointdeliversanintrospection‐basedantivirussolution.vShieldEndpointuse
vShield Administration Guide150 VMware, Inc. Cannot Log In to CLI After the vShield Manager Virtual Machine StartsProblemIcannotlogintothevShiel
VMware, Inc. 151Appendix C Troubleshooting Firewall Block Rule Not Blocking Matching TrafficProblemIconfiguredanAppFirewallruletoblockspecific
vShield Administration Guide152 VMware, Inc. 4Verifythatthekernelmoduleisloaded:vmkload_mod –l | grep vshd -ni5Verifythatthemirrorvirtualm
VMware, Inc. 153Appendix C Troubleshooting To troubleshoot if broadcast packets are being received but unicast packets are being dropped 1Run/opt/vmw
vShield Administration Guide154 VMware, Inc. Port Id isthefirstcolumninallothertables(ActivePorts,SwitchState,andPortstats).Thisisau
VMware, Inc. 155Appendix C Troubleshooting Load-Balancer Throws Error 502 Bad Gateway for HTTP RequestsTo determine why the load balancer service on a
vShield Administration Guide156 VMware, Inc. Bydefault,thevaluesinreleasebuildsaresettoVMWARE_LOGandAUDIT.FormoreonmonitoringvShield
VMware, Inc. 157 IndexAaccessing online help 18adding a user 34admin user account 34alarms for vShield Endpoint 82App Firewall 71about L4 and L2/L3 ru
vShield Administration Guide158 VMware, Inc. Ffirewallabout 27add vShield Edge firewall rule 50adding L2/L3 rules 75adding L4 rules 29, 73adding rules
VMware, Inc. 159Index adding L2/L3 rules to Zones Firewall 30adding L4 rules to App Firewall 73adding L4 rules to Zones Firewall 29deleting App Firewa
vShield Administration Guide16 VMware, Inc.
vShield Administration Guide160 VMware, Inc. vShield App 45vShield Edge 46vShield Endpoint module 47vShield Zones 45unregister a vShield Endpoint SVM
VMware, Inc. 161Index write memory 104ZZones Firewall 27adding L2/L3 rules 30adding L4 rules 29deleting rules 32hierarchy of rules 28planning rule enf
vShield Administration Guide162 VMware, Inc.
VMware, Inc. 17 2ThevShieldManageruserinterfaceoffersconfigurationanddataviewingoptionsspecifictovShielduse.ByutilizingtheVMwareInf
vShield Administration Guide18 VMware, Inc. Accessing the Online HelpTheOnlineHelpcanbeaccessedbyclickingintheupperrightofthevShieldMa
VMware, Inc. 19Chapter 2 vShield Manager User Interface Basics vShield Manager Configuration PanelThevShieldManagerconfigurationpanelpresentsthe
VMware, Inc.3401 Hillview Ave.Palo Alto, CA 94304www.vmware.com2 VMware, Inc.vShield Administration Guide You can find the most up-to-date technical d
vShield Administration Guide20 VMware, Inc.
VMware, Inc. 21 3ThevShieldManagerrequirescommunicationwithyourvCenterServerandservicessuchasDNSandNTPtoprovidedetailsonyourVMwar
vShield Administration Guide22 VMware, Inc. 4TypethepasswordassociatedwiththeusernameinthePasswordfield.5ClickSave.ThevShieldManagercon
VMware, Inc. 23Chapter 3 Management System Settings Set the vShield Manager Date and TimeYoucansetthedate,time,andtimezoneofthevShieldMana
vShield Administration Guide24 VMware, Inc. 4UnderTechSupportLogDownload,clickInitiatenexttotheappropriatecomponent.Onceinitiated,thelog
VMware, Inc. 25Chapter 3 Management System Settings 5ClickGenerate.To import an SSL certificate1ClickSettings&ReportsfromthevShieldManager
vShield Administration Guide26 VMware, Inc.
VMware, Inc. 27 4vShieldZonesprovidesfirewallprotectionaccesspolicyenforcement.Trafficdetailsincludesources,destinations,directionofses
vShield Administration Guide28 VMware, Inc. Default RulesBydefault,ZonesFirewallenforcesasetofrulesallowingtraffictopassthroughallvShie
VMware, Inc. 29Chapter 4 Zones Firewall Management Create a Zones Firewall RuleZonesFirewallrulesallowordenytrafficbasedonthefollowingcrite
VMware, Inc. 3 ContentsAboutThisBook 9vShieldManagerandvShieldZones1 OverviewofvShield 13vShieldComponents 13vShieldManager 13vShieldZones
vShield Administration Guide30 VMware, Inc. 5ClickAdd.AnewrowappearsintheClusterLevelRulessectionofthetable.6Double‐clickeachcellinth
VMware, Inc. 31Chapter 4 Zones Firewall Management 7Double‐clickeachcellinthenewrowtotypeorselecttheappropriateinformation.YoucantypeI
vShield Administration Guide32 VMware, Inc. Delete a Zones Firewall RuleYoucandeleteanyAppFirewallruleyouhavecreated.Youcannotdeletethea
VMware, Inc. 33 5Securityoperationsareoftenmanagedbymultipleindividuals.Managementoftheoverallsystemisdelegatedtodifferentpersonnela
vShield Administration Guide34 VMware, Inc. Managing the Default User AccountThevShieldManageruserinterfaceincludesonedefaultuseraccount,use
VMware, Inc. 35Chapter 5 User Management 4ClickUpdateUser.5Makechangesasnecessary.Ifyouarechangingthepassword,confirmthepasswordbytypi
vShield Administration Guide36 VMware, Inc.
VMware, Inc. 37 6vShieldsoftwarerequiresperiodicupdatestomaintainsystemperformance.UsingtheUpdatestaboptions,youcaninstallandtracks
vShield Administration Guide38 VMware, Inc. 6ClickConfirmInstalltoconfirmupdateinstallation.Therearetwotablesonthisscreen.Duringinstalla
VMware, Inc. 39 7YoucanbackupandrestoreyourvShieldManagerdata,whichcanincludesystemconfiguration,events,andauditlogtables.Configur
vShield Administration Guide4 VMware, Inc. 5 UserManagement 33ManagingUserRights 33ManagingtheDefaultUserAccount 34AddaUser 34AssignaRolea
vShield Zones Administration Guide40 VMware, Inc. Schedule a Backup of vShield Manager DataYoucanonlyscheduletheparametersforonetypeofbackup
VMware, Inc. 41 8SystemeventsareeventsthatarerelatedtovShieldoperation.Theyareraisedtodetaileveryoperationalevent,suchasavShield
vShield Administration Guide42 VMware, Inc. System Event NotificationsvShield Manager Virtual Appliance EventsvShield App EventsSyslog FormatThesyste
VMware, Inc. 43Chapter 8 System Events and Audit Logs Thefieldsandtypesofthesystemeventare:Event ID :: 32 bit unsigned integer Timestamp ::
vShield Administration Guide44 VMware, Inc.
VMware, Inc. 45 9ThischapterdetailsthestepsrequiredtouninstallvShieldcomponentsfromyourvCenterinventory.Thischapterincludesthefollow
vShield Administration Guide46 VMware, Inc. Uninstall a vShield Edge from a Port GroupYoucanuninstallavShieldEdgefromaportgroupbyusingthe
VMware, Inc. 47Chapter 9 Uninstalling vShield Components Uninstall a vShield Endpoint ModuleBeforeyouuninstalltheavShieldEndpointmodulefromth
vShield Administration Guide48 VMware, Inc.
VMware, Inc. 49 10vShieldEdgeprovidesnetworkedgesecurityandgatewayservicestoisolatethevirtualmachinesinaportgroup,vDSportgroup,or
VMware, Inc. 5 vShieldEdgeandPortGroupIsolationvShieldAppandvShieldEndpoint11 vShieldAppManagement 61SendvShieldAppSystemEventstoaSy
vShield Administration Guide50 VMware, Inc. Specify a Remote Syslog ServerYoucansendvShieldEdgeevents,suchasviolatedfirewallrules,toasysl
VMware, Inc. 51Chapter 10 vShield Edge Management 5ClickAdd.Anewrowappearsinthetable.6Double‐clickeachcellintherowtoenterorselectthe
vShield Administration Guide52 VMware, Inc. To configure a DNAT rule for a vShield Edge1IntothevSphereClient,gotoInventory>Networking.2 Se
VMware, Inc. 53Chapter 10 vShield Edge Management 5UnderStaticBindings,clickAddBindings.Anewrowappearsinthetable.6Double‐clickeachcelli
vShield Administration Guide54 VMware, Inc. To configure VPN on a vShield Edge1InthevSphereClient,gotoInventory>Networking.2 Selectaninte
VMware, Inc. 55Chapter 10 vShield Edge Management Manage Load Balancer ServiceThevShieldEdgeprovidesloadbalancingforHTTPtraffic.Loadbalancin
vShield Administration Guide56 VMware, Inc. 15 PressENTER.Youcanaddadditionalwebserversinthesamemanner.16 ClickCommit.17 Ifloadbalancers
VMware, Inc. 57 vShield Edge and Port Group Isolation
vShield Administration Guide58 VMware, Inc.
VMware, Inc. 59 vShield App and vShield Endpoint
VMware, Inc. 6 Events 83AuditMessages 86AppendixesA CommandLineInterface 89LoggingInandOutoftheCLI 89CLICommandModes 89CLISyntax 90Moving
vShield Administration Guide60 VMware, Inc.
VMware, Inc. 61 11vShieldAppisaninterior,vNIC‐levelfirewallthatallowsyoutocreateaccesscontrolpoliciesregardlessofnetworktopology.A
vShield Administration Guide62 VMware, Inc. Back Up the Running CLI Configuration of a vShield AppTheCLIConfigurationoptiondisplaystherunningco
VMware, Inc. 63Chapter 11 vShield App Management Restart a vShield AppYoucanrestartavShieldApptotroubleshootanoperationalissue.To restart a
vShield Administration Guide64 VMware, Inc.
VMware, Inc. 65 12FlowMonitoringisatrafficanalysistoolthatprovidesadetailedviewofthetrafficonyourvirtualnetworkthatpassedthrough
vShield Administration Guide66 VMware, Inc. View a Specific Application in the Flow Monitoring ChartsYoucanselectaspecificapplicationtoviewin
VMware, Inc. 67Chapter 12 Flow Monitoring 7 SelectadestinationIPaddress.8 SelectasourceIPaddress.AtthesourceIPaddresslevel,youcancreat
vShield Administration Guide68 VMware, Inc. 14 (Optional)Double‐clicktheActioncolumncelltochangethevaluetoAlloworDeny.15 (Optional)With
VMware, Inc. 69Chapter 12 Flow Monitoring 10 Double‐clicktheResourcecelltoselectthecontainerinwhichtoenforcethenewmapping.TheANYvalue
VMware, Inc. 7 C Troubleshooting 149TroubleshootingvShieldManagerInstallation 149vShieldOVAFileExtractedtoaPCWherevSphereClientIsNotIns
vShield Administration Guide70 VMware, Inc.
VMware, Inc. 71 13vShieldAppprovidesfirewallprotectionthroughaccesspolicyenforcement.TheAppFirewalltabrepresentsthevShieldAppfirewall
vShield Administration Guide72 VMware, Inc. AsecuritygroupisatrustzonethatyoucreateandassignresourcestoforAppFirewallprotection.Secu
VMware, Inc. 73Chapter 13 App Firewall Management Denyalltrafficbydefault.YoucanchangetheActionstatusofthedefaultrulesfromAllowtoDe
vShield Administration Guide74 VMware, Inc. To create a firewall rule at the cluster level1InthevSphereClient,gotoInventory>HostsandClust
VMware, Inc. 75Chapter 13 App Firewall Management Create a Layer 2/Layer 3 App Firewall RuleTheLayer2/Layer3firewallenablesconfigurationofallo
vShield Administration Guide76 VMware, Inc. 5Double‐clicktherowandtypeanameforthegroup.6ClickAdd.Aftersecuritygroupcreationiscomplete,
VMware, Inc. 77Chapter 13 App Firewall Management Revert to a Previous App Firewall ConfigurationThevShieldManagersavesasnapshotofAppFirewall
vShield Administration Guide78 VMware, Inc. SpoofGuard Screen OptionsTheSpoofGuardscreendisplaysthefollowingoptions.Enable SpoofGuardYoumusten
VMware, Inc. 79Chapter 13 App Firewall Management 5Dooneofthefollowing: Selectthetopcheckboxintheleftsidecheckboxcolumntoselectall
VMware, Inc. 8
vShield Administration Guide80 VMware, Inc.
VMware, Inc. 81 14vShieldEndpointdeliversanintrospection‐basedantivirussolution.vShieldEndpointusesthehypervisortoscanguestvirtualmach
vShield Administration Guide82 VMware, Inc. AlarmsAlarmssignalthevCenterServeradministratoraboutvShieldEndpointeventsthatrequireattention.
VMware, Inc. 83Appendix 14 vShield Endpoint Events and Alarms VM AlarmsVMalarmsaregeneratedbyeventsaffectingthehealthstatusofthevShieldEn
vShield Administration Guide84 VMware, Inc. 0005 VSM_FSFD_EVENT_UNKNOWN_STATE timestamp warning N/A0006 VSM_FSFD_EVENT_MISSING_TIMER timestamp error
VMware, Inc. 85Appendix 14 vShield Endpoint Events and Alarms PossiblecausesforeventsarelistedinTable 14‐7:Table 14-7. Possible Causes for Eve
vShield Administration Guide86 VMware, Inc. Audit MessagesAuditmessagesincludefatalerrorsandotherimportantauditmessagesandareloggedto vmw
VMware, Inc. 87 Appendixes
vShield Administration Guide88 VMware, Inc.
VMware, Inc. 89 AEachvShieldvirtualmachinecontainsacommandlineinterface(CLI).ThisappendixdetailsCLIusageandcommands.Useraccountmanag
VMware, Inc. 9 Thismanual,thevShieldAdministrationGuide,describeshowtoinstall,configure,monitor,andmaintaintheVMware®vShield™systemb
vShield Administration Guide90 VMware, Inc. Configuration:Configurationmodecommandsallowyoutochangethecurrentconfigurationofutilitieson
VMware, Inc. 91Appendix A Command Line Interface Getting Help within the CLITheCLIcontainsthefollowingcommandsforassistingyouruse.Securing CL
vShield Administration Guide92 VMware, Inc. 6SwitchtoConfigurationmode.manager# configure terminal 7Addauseraccount.manager(config)# user root p
VMware, Inc. 93Appendix A Command Line Interface 8 Savetheconfiguration.9RuntheexitcommandtwicetologoutoftheCLI.10 LogintotheCLI.11 Sw
vShield Administration Guide94 VMware, Inc. CLI ModePrivilegedExamplevShield# rebootRelated CommandsshutdownshutdownIn Privileged mode, the shutdown c
VMware, Inc. 95Appendix A Command Line Interface CLI ModeBasicExamplevShield# disablevShield> Related CommandsenableenableSwitchestoPrivilegedmo
vShield Administration Guide96 VMware, Inc. ExamplevShield(config-if)# exitvShield(config)# exitvShield#Related CommandsendquitinterfaceSwitchestoIn
VMware, Inc. 97Appendix A Command Line Interface Configuration Commandsclear vmwall rulesResetsthefirewallrulesetonavShieldApptothedefault
vShield Administration Guide98 VMware, Inc. Examplemanager# copy running-config startup-configBuilding Configuration...Configuration saved.[OK]Related
VMware, Inc. 99Appendix A Command Line Interface hostnameChangesthenameoftheCLIprompt.The default prompt name for the vShield Manager is manage
Comments to this Manuals