UCF STIG Viewer Logo

The operating system must ensure unauthorized, security-relevant configuration changes detected are tracked.


Overview

Finding ID Version Rule ID IA Controls Severity
SRG-OS-000265-ESXI5-PNF SRG-OS-000265-ESXI5-PNF SRG-OS-000265-ESXI5-PNF_rule Medium
Description
Configuration settings are the configurable security-related parameters of information technology products that are part of the information system. Security-related parameters are those parameters impacting the security state of the system including parameters related to meeting other security control requirements. Security-related parameters include registry settings; account, file, and directory settings (i.e., permissions); and settings for services, ports, protocols, and remote connections. Permanent not a finding - Auditing cannot be configured/implemented like a typical UNIX system. Data is logged. Remote logging (audit data included) is covered as a VMware HG requirement; refer to SRG-OS-99999-ESXI5-000133.
STIG Date
VMware ESXi v5 Security Technical Implementation Guide 2013-01-15

Details

Check Text ( C-SRG-OS-000265-ESXI5-PNF_chk )
ESXi supports this requirement and cannot be configured to be out of compliance. This is a permanent not a finding.
Fix Text (F-SRG-OS-000265-ESXI5-PNF_fix)
This requirement is permanent not a finding. No fix is required.