SV-207618r388482_rule
V-207618
SRG-OS-000480-VMM-002000
ESXI-65-000017
CAT II
10
From an SSH session connected to the ESXi host, or from the ESXi shell, add or correct the following line in "/etc/ssh/sshd_config":
MACs hmac-sha1,hmac-sha2-256,hmac-sha2-512
From an SSH session connected to the ESXi host, or from the ESXi shell, run the following command:
# grep -i "^MACs" /etc/ssh/sshd_config
If there is no output or the output is not exactly "MACs hmac-sha1,hmac-sha2-256,hmac-sha2-512", this is a finding.
V-207618
False
ESXI-65-000017
From an SSH session connected to the ESXi host, or from the ESXi shell, run the following command:
# grep -i "^MACs" /etc/ssh/sshd_config
If there is no output or the output is not exactly "MACs hmac-sha1,hmac-sha2-256,hmac-sha2-512", this is a finding.
M
2925