CIS VMware ESXi 7.0 v1.4.0 L2

Audit Details

Name: CIS VMware ESXi 7.0 v1.4.0 L2

Updated: 5/22/2024

Authority: CIS

Plugin: VMware

Revision: 1.0

Estimated Item Count: 30

File Details

Filename: CIS_VMware_ESXi_7.0_v1.4.0_L2.audit

Size: 112 kB

MD5: 0f8b1d6d400bffbdf396d07faea95d21
SHA256: 9a6cc23120783fe4570c87ca5681294ecd45cb567fe5cd42a9ced0b3acd485db

Audit Items

DescriptionCategories
1.4 (L2) Ensure the default value of individual salt per vm is configured

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

2.9 (L2) Ensure VDS health check is disabled

ACCESS CONTROL, AUDIT AND ACCOUNTABILITY

5.6 (L2) Ensure Strict Lockdown mode is enabled

ACCESS CONTROL

5.11 (L2) Ensure contents of exposed configuration files have not been modified

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

6.2 (L2) Ensure the uniqueness of CHAP authentication secrets for iSCSI traffic

IDENTIFICATION AND AUTHENTICATION

8.1.1 (L2) Ensure only one remote console connection is permitted to a VM at any time

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

8.2.2 (L2) Ensure unnecessary CD/DVD devices are disconnected

CONFIGURATION MANAGEMENT

8.4.2 (L2) Ensure Autologon is disabled

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

8.4.3 (L2) Ensure BIOS BBS is disabled

CONFIGURATION MANAGEMENT

8.4.4 (L2) Ensure Guest Host Interaction Protocol Handler is set to disabled

CONFIGURATION MANAGEMENT

8.4.5 (L2) Ensure Unity Taskbar is disabled

CONFIGURATION MANAGEMENT

8.4.6 (L2) Ensure Unity Active is disabled

CONFIGURATION MANAGEMENT

8.4.7 (L2) Ensure Unity Window Contents is disabled

CONFIGURATION MANAGEMENT

8.4.8 (L2) Ensure Unity Push Update is disabled

CONFIGURATION MANAGEMENT

8.4.9 (L2) Ensure Drag and Drop Version Get is disabled

CONFIGURATION MANAGEMENT

8.4.10 (L2) Ensure Drag and Drop Version Set is disabled

CONFIGURATION MANAGEMENT

8.4.11 (L2) Ensure Shell Action is disabled

CONFIGURATION MANAGEMENT

8.4.12 (L2) Ensure Request Disk Topology is disabled

CONFIGURATION MANAGEMENT

8.4.13 (L2) Ensure Trash Folder State is disabled

CONFIGURATION MANAGEMENT

8.4.14 (L2) Ensure Guest Host Interaction Tray Icon is disabled

CONFIGURATION MANAGEMENT

8.4.15 (L2) Ensure Unity is disabled

CONFIGURATION MANAGEMENT

8.4.16 (L2) Ensure Unity Interlock is disabled

CONFIGURATION MANAGEMENT

8.4.17 (L2) Ensure GetCreds is disabled

CONFIGURATION MANAGEMENT

8.4.18 (L2) Ensure Host Guest File System Server is disabled

CONFIGURATION MANAGEMENT

8.4.19 (L2) Ensure Guest Host Interaction Launch Menu is disabled

CONFIGURATION MANAGEMENT

8.4.20 (L2) Ensure memSchedFakeSampleStats is disabled

CONFIGURATION MANAGEMENT

8.5.1 (L2) Ensure VM limits are configured correctly

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION

8.5.2 (L2) Ensure hardware-based 3D acceleration is disabled

CONFIGURATION MANAGEMENT

8.6.1 (L2) Ensure nonpersistent disks are limited

AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION, SYSTEM AND INFORMATION INTEGRITY

8.7.2 (L2) Ensure host information is not sent to guests

CONFIGURATION MANAGEMENT, SYSTEM AND SERVICES ACQUISITION