Water-utility guest VMs on ESXi already have VMware Tools with Guest Introspection. The security team still needs Carbon Black prevention on those workloads. What should the administrator deploy?
Select an answer to reveal the explanation.
Short Explanation
Guest Introspection is a different tool on the workbench—handy for NSX guest features, not the Carbon Black smoke detector. Still install the CBC workload or endpoint sensor on those utility VMs. VMTools being present does not check the guest into the Carbon Black console.
Full Explanation
VMware Tools Guest Introspection supports NSX guest features such as identity firewall and partner introspection; it is not a Carbon Black Cloud / CB Defense sensor. Prevention on ESXi guests still requires the CBC workload or endpoint sensor. A distributed-firewall any-any allow is the opposite of prevention. UEM iOS profiles do not apply to ESXi hosts.