CIS VMware ESXi 6.7 v1.3.0 Level 2

Audit Details

Name: CIS VMware ESXi 6.7 v1.3.0 Level 2

Updated: 7/5/2023

Authority: CIS

Plugin: VMware

Revision: 1.0

Estimated Item Count: 32

File Details

Filename: CIS_VMware_ESXi_6.7_v1.3.0_L2.audit

Size: 142 kB

MD5: f583332bdb0c9a38fcb3fe91d9477979
SHA256: 8db78929bdd863ba431b0b8fd15a37b87ee5491723537db7f531760afee2db2b

Audit Items

DescriptionCategories
1.4 Ensure the default value of individual salt per vm is configured

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

5.2 Ensure DCUI is disabled

CONFIGURATION MANAGEMENT

5.11 Ensure contents of exposed configuration files have not been modified

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

8.1.2 Ensure only one remote console connection is permitted to a VM at any time

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

8.2.2 Ensure unnecessary CD/DVD devices are disconnected

CONFIGURATION MANAGEMENT

8.4.2 Ensure Autologon is disabled

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

8.4.3 Ensure BIOS BBS is disabled

CONFIGURATION MANAGEMENT

8.4.4 Ensure Guest Host Interaction Protocol Handler is set to disabled

CONFIGURATION MANAGEMENT

8.4.5 Ensure Unity Taskbar is disabled

CONFIGURATION MANAGEMENT

8.4.6 Ensure Unity Active is disabled

CONFIGURATION MANAGEMENT

8.4.7 Ensure Unity Window Contents is disabled

CONFIGURATION MANAGEMENT

8.4.8 Ensure Unity Push Update is disabled

CONFIGURATION MANAGEMENT

8.4.9 Ensure Drag and Drop Version Get is disabled

CONFIGURATION MANAGEMENT

8.4.10 Ensure Drag and Drop Version Set is disabled

CONFIGURATION MANAGEMENT

8.4.11 Ensure Shell Action is disabled

CONFIGURATION MANAGEMENT

8.4.12 Ensure Request Disk Topology is disabled

CONFIGURATION MANAGEMENT

8.4.13 Ensure Trash Folder State is disabled

CONFIGURATION MANAGEMENT

8.4.14 Ensure Guest Host Interaction Tray Icon is disabled

CONFIGURATION MANAGEMENT

8.4.15 Ensure Unity is disabled

CONFIGURATION MANAGEMENT

8.4.16 Ensure Unity Interlock is disabled

CONFIGURATION MANAGEMENT

8.4.17 Ensure GetCreds is disabled

CONFIGURATION MANAGEMENT

8.4.18 Ensure Host Guest File System Server is disabled

CONFIGURATION MANAGEMENT

8.4.19 Ensure Guest Host Interaction Launch Menu is disabled

CONFIGURATION MANAGEMENT

8.4.20 Ensure memSchedFakeSampleStats is disabled

CONFIGURATION MANAGEMENT

8.4.26 Ensure all but VGA mode on virtual machines is disabled

CONFIGURATION MANAGEMENT

8.5.1 Ensure VM limits are configured correctly - CPU Share Level

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

8.5.1 Ensure VM limits are configured correctly - Mem Share Level

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

8.5.1 Ensure VM limits are configured correctly - Num Mem Shares

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

8.5.2 Ensure hardware-based 3D acceleration is disabled

CONFIGURATION MANAGEMENT

8.6.1 Ensure nonpersistent disks are limited

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION, SYSTEM AND INFORMATION INTEGRITY

8.7.1 Ensure VIX messages from the VM are disabled

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

8.7.3 Ensure host information is not sent to guests

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION