question

Chad-1508 avatar image
0 Votes"
Chad-1508 asked Chad-1508 commented

Hyper-V host: offline vs. domain joined

Good day everyone,

I'm looking for thoughts around having Hyper-V hosts that are not connected to any network and how much of a security enhancement (if any) this is versus joining the host to our domain. Please note that I am aware of the drawbacks of having hosts not joined to the domain (maintenance, administration, etc.); I am only interested in one question: strictly from a security point-of-view, is it better to have Hyper-V hosts attached to no network at all versus domain-joined. Any feedback is appreciated.

Cheers,

Chad

windows-server-hyper-v
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

1 Answer

XiaoweiHe-MSFT avatar image
0 Votes"
XiaoweiHe-MSFT answered Chad-1508 commented

Hi,

If the Hyper V host doesn't need to interactive with other Hyper V hosts or other servers, the answer is Yes, it's more secure to connect the Host to no network.

When the host joins the domain, we may have secure connection when we use Live migration, replication, and have more convenience when management.

If we just need to do some tests for the VMs in the host, and the VMs don't need the external network connection, it's safe that we don't connect the Hyper V host to any network.

Thanks for your time!
Best Regards,
Anne


If the Answer is helpful, please click "Accept Answer" and upvote it.
Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

· 1
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

Thanks for your response Anne; makes sense to me.

Chad

0 Votes 0 ·