UCF STIG Viewer Logo

The operating system must employ automated mechanisms to enable authorized users to make information sharing decisions based on access authorizations of sharing partners and access restrictions on information to be shared.


Overview

Finding ID Version Rule ID IA Controls Severity
SRG-OS-000036-ESXI5-PNF SRG-OS-000036-ESXI5-PNF SRG-OS-000036-ESXI5-PNF_rule Medium
Description
Depending on the information sharing circumstance, the sharing partner may be defined at the individual, group, or organization level and information may be defined by specific content, type, or security categorization. The operating system must restrict data in some manner (e.g., privileged medical, contract-sensitive, proprietary, personally identifiable information, special access programs/compartments) and must provide the capability to automatically enable authorized users to make information sharing decisions based upon access authorizations. Applicable, but permanent not-a-finding - Applicable, but permanent not-a-finding - A hypervisor is a single function environment. It is meant solely to support VM access to system resources.
STIG Date
VMware ESXi v5 Security Technical Implementation Guide 2013-01-15

Details

Check Text ( C-SRG-OS-000036-ESXI5-PNF_chk )
ESXi supports this requirement and cannot be configured to be out of compliance. This is a permanent not a finding.
Fix Text (F-SRG-OS-000036-ESXI5-PNF_fix)
This requirement is permanent not a finding. No fix is required.