UCF STIG Viewer Logo

The operating system must use cryptographic mechanisms to protect the integrity of audit tools.


Overview

Finding ID Version Rule ID IA Controls Severity
SRG-OS-000278-ESXI5-PNF SRG-OS-000278-ESXI5-PNF SRG-OS-000278-ESXI5-PNF_rule Medium
Description
Auditing and logging are key components of any security architecture. It is essential security personnel know what is being done, what attempted to be done, where it was done, when it was done, and by whom in order to compile an accurate risk assessment. Cryptographic mechanisms must be used to protect the integrity of the audit tools used for audit reduction and reporting. Permanent not a finding - Auditing cannot be configured/implemented like a typical UNIX system. Remote logging (audit data included) is required. Audit tools are located on vCenter "or" wherever the syslog collector is located (it does not have to be on the same machine as vCenter. Therefore, the tools and mechanisms to protect them is the responsibility of the tools' host machine.
STIG Date
VMware ESXi v5 Security Technical Implementation Guide 2013-01-15

Details

Check Text ( C-SRG-OS-000278-ESXI5-PNF_chk )
ESXi supports this requirement and cannot be configured to be out of compliance. This is a permanent not a finding.
Fix Text (F-SRG-OS-000278-ESXI5-PNF_fix)
This requirement is permanent not a finding. No fix is required.