CIS VMware ESXi 6.5 v1.0.0 Level 2

Audit Details

Name: CIS VMware ESXi 6.5 v1.0.0 Level 2

Updated: 3/7/2023

Authority: CIS

Plugin: VMware

Revision: 1.11

Estimated Item Count: 33

File Details

Filename: CIS_VMware_ESXi_6.5_v1.0.0_L2.audit

Size: 134 kB

MD5: 43d5934a38e47feac84e7c56b6539896
SHA256: 5aa67aff8afa1b947d097c11c5a663de4ee65665fc793d3b42513abf0d280342

Audit Items

DescriptionCategories
5.2 Ensure DCUI is disabled

SYSTEM AND INFORMATION INTEGRITY

5.11 Ensure contents of exposed configuration files have not been modified

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

6.4 Ensure VMDK files are zeroed out prior to deletion

ACCESS CONTROL

8.1.2 Ensure only one remote console connection is permitted to a VM at any time

SYSTEM AND INFORMATION INTEGRITY

8.2.2 Ensure unnecessary CD/DVD devices are disconnected

SYSTEM AND INFORMATION INTEGRITY

8.4.5 Ensure Autologon is disabled

ACCESS CONTROL

8.4.6 Ensure BIOS BBS is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.7 Ensure Guest Host Interaction Protocol Handler is set to disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.8 Ensure Unity Taskbar is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.9 Ensure Unity Active is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.10 Ensure Unity Window Contents is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.11 Ensure Unity Push Update is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.12 Ensure Drag and Drop Version Get is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.13 Ensure Drag and Drop Version Set is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.14 Ensure Shell Action is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.15 Ensure Request Disk Topology is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.16 Ensure Trash Folder State is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.17 Ensure Guest Host Interaction Tray Icon is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.18 Ensure Unity is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.19 Ensure Unity Interlock is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.20 Ensure GetCreds is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.21 Ensure Host Guest File System Server is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.22 Ensure Guest Host Interaction Launch Menu is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.23 Ensure memSchedFakeSampleStats is disabled

SYSTEM AND INFORMATION INTEGRITY

8.4.29 Ensure all but VGA mode on virtual machines is disabled

SYSTEM AND INFORMATION INTEGRITY

8.5.1 Ensure VM limits are configured correctly - CPU Share Level

SYSTEM AND COMMUNICATIONS PROTECTION

8.5.1 Ensure VM limits are configured correctly - Mem Share Level

SYSTEM AND COMMUNICATIONS PROTECTION

8.5.1 Ensure VM limits are configured correctly - Num Mem Shares

SYSTEM AND COMMUNICATIONS PROTECTION

8.5.2 Ensure hardware-based 3D acceleration is disabled

SYSTEM AND INFORMATION INTEGRITY

8.6.1 Ensure nonpersistent disks are limited

AUDIT AND ACCOUNTABILITY

8.7.1 Ensure VIX messages from the VM are disabled

CONFIGURATION MANAGEMENT

8.7.3 Ensure host information is not sent to guests

SYSTEM AND COMMUNICATIONS PROTECTION

CIS VMware ESXi 6.5 v1.0.0 Level 2

CONFIGURATION MANAGEMENT