STIGQter STIGQter: STIG Summary:

VMware vSphere 6.7 Virtual Machine Security Technical Implementation Guide

Version: 1

Release: 1 Benchmark Date: 09 Mar 2021

CheckedNameTitle
SV-239332r679545_ruleCopy operations must be disabled on the virtual machine.
SV-239333r679548_ruleDrag and drop operations must be disabled on the virtual machine.
SV-239334r679551_rulePaste operations must be disabled on the virtual machine.
SV-239335r679554_ruleVirtual disk shrinking must be disabled on the virtual machine.
SV-239336r679557_ruleVirtual disk erasure must be disabled on the virtual machine.
SV-239337r679560_ruleIndependent, non-persistent disks must be not be used on the virtual machine.
SV-239338r679563_ruleHGFS file transfers must be disabled on the virtual machine.
SV-239339r679566_ruleUnauthorized floppy devices must be disconnected on the virtual machine.
SV-239340r679569_ruleUnauthorized CD/DVD devices must be disconnected on the virtual machine.
SV-239341r679572_ruleUnauthorized parallel devices must be disconnected on the virtual machine.
SV-239342r679575_ruleUnauthorized serial devices must be disconnected on the virtual machine.
SV-239343r679578_ruleUnauthorized USB devices must be disconnected on the virtual machine.
SV-239344r679581_ruleConsole connection sharing must be limited on the virtual machine.
SV-239345r679584_ruleConsole access through the VNC protocol must be disabled on the virtual machine.
SV-239346r679587_ruleInformational messages from the virtual machine to the VMX file must be limited on the virtual machine.
SV-239347r679590_ruleUnauthorized removal, connection and modification of devices must be prevented on the virtual machine.
SV-239348r679593_ruleThe virtual machine must not be able to obtain host information from the hypervisor.
SV-239349r679596_ruleShared salt values must be disabled on the virtual machine.
SV-239350r679599_ruleAccess to virtual machines through the dvfilter network APIs must be controlled.
SV-239351r679602_ruleSystem administrators must use templates to deploy virtual machines whenever possible.
SV-239352r679605_ruleUse of the virtual machine console must be minimized.
SV-239353r679608_ruleThe virtual machine guest operating system must be locked when the last console connection is closed.
SV-239354r679611_rule3D features on the virtual machine must be disabled when not required.
SV-242469r717088_ruleEncryption must be enabled for vMotion on the virtual machine.