UCF STIG Viewer Logo

Inetd or xinetd logging/tracing must be enabled.


Overview

Finding ID Version Rule ID IA Controls Severity
GEN003800-ESXI5-PNF GEN003800-ESXI5-PNF GEN003800-ESXI5-PNF_rule Low
Description
Inetd or xinetd logging and tracing allows the system administrators to observe the IP addresses that are connecting to their machines and to observe what network services are being sought. This provides valuable information when trying to find the source of malicious users and potential malicious users. Permanent not a finding - Auditing cannot be configured/implemented like a typical UNIX system. Logging is enabled by default and cannot be configured (no -l option to the inetd command, which is "actually" a symbolic link to VMware's proprietary busybox binary).
STIG Date
VMware ESXi v5 Security Technical Implementation Guide 2013-01-15

Details

Check Text ( C-GEN003800-ESXI5-PNF_chk )
ESXi supports this requirement and cannot be configured to be out of compliance. This is a permanent not a finding.
Fix Text (F-GEN003800-ESXI5-PNF_fix)
This requirement is permanent not a finding. No fix is required.