disable secure shell
enable telnet ..
VMware has released a guide to hardening its NSX virtual networking and product. The guide published online by VMware information security professional Pravin Goyal, covers management, control and data planes. It recommends including audit logs and system events in backups, enabling and securing remote logging for the NSX …
"Network for controllers should be isolated completely. There is no security on communications between the controllers by design. Without isolation, the virtual network information is exposed to confidentiality, integrity, and availability attacks."
W.T.F.
Surely the absolute, most basic security measure would be to force (or at least have it as an option!) the controllers to use SSL between themselves for their comms?