ESX Virtualization

VMware ESXi, vSphere, VMware Backup, Hyper-V... how-to, videos....

Nakivo Backup and Replication - #1 Backup solution for Virtual, physical, cloud, NAS and SaaS

Menu
  • Certification
      • VCP-DCV vSphere 8
          • vcp2024-125.
        • Close
    • Close
  • VMware
    • Configuration Maximums
    • vSphere
      • vSphere 8.0
      • vSphere 7.0
      • vSphere 6.7
      • vSphere 6.5
      • vSphere 6.0
      • Close
    • VMworld
      • VMware EXPLORE 2024
      • VMware EXPLORE 2023
      • VMware EXPLORE 2022
      • VMworld 2019
      • VMworld 2018
      • VMworld 2017
      • VMworld 2016
      • VMworld 2015
      • VMworld 2014
      • VMworld 2013
      • VMworld 2012
      • VMworld 2011
      • Close
    • Close
  • Microsoft
    • Windows Server 2012
    • Windows Server 2016
    • Windows Server 2019
    • Close
  • Categories
    • Tips – VMware, Microsoft and General IT tips and definitions, What is this?, How this works?
    • Server Virtualization – VMware ESXi, ESXi Free Hypervizor, VMware vSphere Server Virtualization, VMware Cloud and Datacenter Virtualization
    • Backup – Virtualization Backup Solutions, VMware vSphere Backup and ESXi backup solutions.
    • Desktop Virtualization – Desktop Virtualization, VMware Workstation, VMware Fusion, VMware Horizon View, tips and tutorials
    • How To – ESXi Tutorials, IT and virtualization tutorials, VMware ESXi 4.x, ESXi 5.x and VMware vSphere. VMware Workstation and other IT tutorials.
    • Free – Free virtualization utilities, ESXi Free, Monitoring and free backup utilities for ESXi and Hyper-V. Free IT tools.
    • Videos – VMware Virtualization Videos, VMware ESXi Videos, ESXi 4.x, ESXi 5.x tips and videos.
    • Home Lab
    • Reviews – Virtualization Software and reviews, Disaster and backup recovery software reviews. Virtual infrastructure monitoring software review.
    • Close
  • Partners
    • NAKIVO
    • StarWind
    • Zerto
    • Xorux
    • Close
  • This Web
    • News
    • ESXi Lab
    • About
    • Advertise
    • Archives
    • Disclaimer
    • PDFs and Books
    • Close
  • Free
  • Privacy policy

Manage your Security and Compliance Globally Across Environments and Geo-locations via Runecast Platform

By Vladan SEGET | Last Updated: April 5, 2022

Shares

Runecast has grown again by providing global visibility enabling you to be able to achieve 100 % compliance within your enterprise. This can now be achieved with one unified platform. As enterprises have many geo locations and separate datacenters and remote offices across the globe. The management of such an environment with separate and siloed software isn't usually the best you want. Ideally, a single pane of glass is what's kind of a holy grail for IT admins. Runecast's latest platform update does just that!

Until now, there was not a possibility within the Runecast platform, to have multiple teams (SecOps, Compliance, IT infrastructure, DevOpes)  each managing security, infrastructure health, or compliance within a different geographical location. This is a new feature in Runecast 6.1 called Organizations, which is particularly useful when your company has many offices around the world and you want to avoid siloed reporting and management.

You can grant access to your teams based on their geo-location to be able to manage the infrastructure that they are responsible for. You can actually replicate your existing company structure now. Runecast has integration to Microsoft AD or LDAP so your team will see only what they need to see (previously, all teams saw everything) depending on the permissions they are assigned to or depending on the level of their role.

From other innovations, we can mention KEV correlation which stands for Known Exploited Vulneratilibies (KEV). This is a catalog that contains common vulnerabilities. The mission of the CVE program is to identify, define, and catalog publicly disclosed cybersecurity vulnerabilities. In fact, it is CISA (Cybersecurity & Infrastructure Security Agency) in the USA that maintains the KEV catalog which is a very useful tool to fight against cyberattacks.

While it is clear that military and government organizations have to be compliant, there is due date in the KEV catalog and for those organizations it is mandatory. For others, they can still use it as a guide and be patched and fully protected. KEV can be used with DISA STIG (Defence Information Systems Agency) (Security Technical Implementation Guides) and use it for example for closing remote access ports or removing factory defaults admin passwords.

Runecast platform brings also more security profiles that can be applied to the OS level now (DISA STIG profile) and vSphere can now be evaluated against GDPR. Overall, there are also improved views allowing you to filter, inspect and resolve all reported issues.

The Runecast platform provides configuration, best practices, vulnerability, and security compliance across your global estate. Your teams located across the globe have all the required information to proactively secure your infrastructure and maintain uptime.

Quote from Runecast:

Servers and appliances which are physically located in separate regions and controlled by different Operations teams can now be put in different Organizations in the Runecast interface, saving your teams time while bringing better operational transparency.

Screenshot from Runecast

Runecast is becoming a Single Pane of Glass for security and compliance

Here is a list of compliance standards that the Runecats platform supports right now (growing):

  • DISA STIG
  • BSI IT-Grundschutz
  • ISO 27001
  • GDPR
  • CIS Benchmarks
  • NIST
  • HIPAA
  • PCI DSS
  • Cyber Essentials (UK)
  • Essential 8 (Australia/NZ)
  • CISA KEVs vulnerabilities catalog

Runecast 6.1 New Features

  • Organizations – as we mentioned above, Runecast can now truly match your organization's geographical locations where you can have a single appliance and many security and infrastructure teams managing their offices from different locations. Please note that there is still the option to have the Enterprise console and have multiple departments within one company where each department has its own Runecast appliance independently installed and maintained. If your teams are still running multiple Runecast appliances please note that the Organizations apply only to the appliance they are configured on.
  • CISA Catalog – Runecast security platform now includes CISA catalog of Known Exploited Vulnerabilities. CISA is a Cybersecurity and Infrastructure Security Agency in the USA that has a catalog of all vulnerabilities that are known to have been exploited.
  • Increased security Reach with GDPR compliance – Now Runecast has also added GDPR compliance monitoring for VMware. Windows servers in 2016 and 2019 has a new level of scanning DISA STIG available.
  • New UI – Runecast platform has a new look as well. With improved clarity within the vSphere environment, you can have better usability and have more responsiveness when navigating and taking actions. With the new issues list, there are newly added powerful ways to observe, filter, inspect and resolve all reported issues.

Screenshot from Runecast

Final Words

This is not Runecast we knew just a couple of years ago. This Runecast is bigger, richer, more global, and more open to a global scale. Runecast has really evolved to become a Security product platform with a possibility of security audit and compliance, as well as keeping your IT infrastructure up-to-date with the best performance and optimization. Runecast has the possibility to manage Kubernetes as well since many organizations taking advantage of modern apps. Kubernetes Security Posture Management (KSPM) software allows you to audit those workloads and have the latest security and vulnerabilities remediation options.

Runecast is becoming really multi-platform security and compliance tool that progressed enormously. It's now a tool that can be used not only by IT admins but also by security teams, CIOs or CISOs. We're evolving into an IT environment where an IT admin with several “hats” has clearly more and more work because of security and compliance. While just a couple of years ago, being an IT admin the job of security and compliance could be done by a single man in small organizations, this becomes more and more difficult today.

Larger IT departments can use single software for the company's security, compliance, best practices, patches, and (or) remediations, for all their multi-cloud and multi-site environment, via a single appliance.

Discover, manage, audit, and remediate across different platforms via a Single Pane of Glass. Runecast platform covers not only on-prem environments with vSphere, different OS types, Horizon, NSX-T, VSAN, Kubernetes, but also public and private clouds such as vCloud Director, AWS, or Azure.

Tight integration with VMware vSphere

Source: Runecast

Some of our Previous posts about the Runecast platform:

  • Runecast 6 and OS-level Support Windows/Linux
  • Runecast can help to detect vulnerability in Apache Log4j Java library
  • vSphere Upgrades easier now with Runecast
  • Track configuration changes in your vSphere Environments with Runecast Configuration Vault Feature

More posts from ESX Virtualization:

  • VMware vCenter Converter Discontinued – what’s your options?
  • How to upgrade VMware VCSA 7 Offline via patch ISO
  • vSphere 7.0 U3C Released
  • vSphere 7.0 Page [All details about vSphere and related products here]
  • VMware vSphere 7.0 Announced – vCenter Server Details
  • VMware vSphere 7.0 DRS Improvements – What's New
  • How to Patch vCenter Server Appliance (VCSA) – [Guide]
  • What is The Difference between VMware vSphere, ESXi and vCenter
  • How to Configure VMware High Availability (HA) Cluster

Stay tuned through RSS, and social media channels (Twitter, FB, YouTube)

Shares
Vote !

| Filed Under: Cloud, Server Virtualization, Tips, Windows Server 2012, Windows Server 2016, Windows Server 2019, Windows Server 2022 Tagged With: Runecast security

About Vladan SEGET

This website is maintained by Vladan SEGET. Vladan is as an Independent consultant, professional blogger, vExpert x16, Veeam Vanguard x9, VCAP-DCA/DCD, ESX Virtualization site has started as a simple bookmarking site, but quickly found a large following of readers and subscribers.

Connect on: Facebook. Feel free to network via Twitter @vladan.

Private Sponsors

Featured

  • Thinking about HCI? G2, an independent tech solutions peer review platform, has published its Winter 2023 Reports on Hyperconverged Infrastructure (HCI) Solutions.
  • Zerto: One Platform for Disaster Recovery, Backup & Cloud Mobility: Try FREE Hands-On Labs Today!
Click to Become a Sponsor

Most Recent

  • Veeam Backup & Replication v13 Beta: A Game-Changer with Linux
  • What is Veeam Data Cloud Vault and how it can help SMBs
  • Nakivo Backup and Replication – Malware Scan Feature
  • Zerto 10 U7 released with VMware NSX 4.2 Support
  • XorMon NG 1.9.0 Infrastructure Monitoring – now also with Veeam Backup Support
  • Heartbeat vs Node Majority StarWind VSAN Failover Strategy
  • Vulnerability in your VMs – VMware Tools Update
  • FREE version of StarWind VSAN vs Trial of Full version
  • Commvault’s Innovations at RSA Conference 2025 San Francisco
  • VMware ESXi FREE is FREE again!

Get new posts by email:

 

 

 

 

Support us on Ko-Fi

 

 

Buy Me a Coffee at ko-fi.com

Sponsors

Free Trials

  • DC Scope for VMware vSphere – optimization, capacity planning, and cost management. Download FREE Trial Here.
  • Augmented Inline Deduplication, Altaro VM Backup v9 For #VMware and #Hyper-V – Grab your copy now download TRIAL.

VMware Engineer Jobs

VMware Engineer Jobs

YouTube

…

Find us on Facebook

ESX Virtualization

…

Copyright © 2025 ·Dynamik-Gen · Genesis Framework · Log in