TNS Citrix Hypervisor

Audit Details

Name: TNS Citrix Hypervisor

Updated: 12/7/2022

Authority: TNS

Plugin: Unix

Revision: 1.8

Estimated Item Count: 46

File Details

Filename: TNS_BestPractice_Citrix_Hypervisor.audit

Size: 43.8 kB

MD5: a11c953cf3d0cf7d864b803ecd8fb906
SHA256: 6accd57af66f0ea15c4a4d8443f1c9add5f14d9952c3f7af5139a6bdb6dc8971

Audit Changelog

 
Revision 1.8

Dec 7, 2022

Miscellaneous
  • Metadata updated.
Revision 1.7

Oct 19, 2022

Functional Update
  • Administrative actions are logged
  • All network interfaces are operating in full-duplex mode
  • Auto-start is not enabled
  • Disable promiscuous mode on all network interfaces
  • Disallow unplug detection on the storage network interface
  • Enable QoS on all VM guests
  • Enable port locking by default on the VM guest network
  • Enable remote syslog
  • External authentication is disabled
  • High availability is enabled
  • Host is enabled
  • Identify a network interface to be used for storage access
  • Install a trusted CA certificate on the pool
  • Install a trusted certificate in place of the default self-signed SSL certificate
  • List non-default VM templates
  • Passwords stored in 'secrets' are not visible
  • Restrict allowed IPv4 addresses used by each VM guest
  • Restrict allowed IPv6 addresses used by each VM guest
  • Review accounts used to mount remote storage
  • Snapshots are not present
  • Use a static IP on the management network interface
  • Use a static IP on the storage network interface
Miscellaneous
  • References updated.
Revision 1.6

Apr 25, 2022

Miscellaneous
  • Metadata updated.
  • References updated.
Revision 1.5

Feb 1, 2021

Miscellaneous
  • Metadata updated.
  • References updated.
Revision 1.4

Oct 5, 2020

Miscellaneous
  • Platform check updated.
Revision 1.3

Sep 29, 2020

Miscellaneous
  • References updated.
Revision 1.2

Jul 14, 2020

Miscellaneous
  • Metadata updated.
Revision 1.1

Apr 22, 2020

Miscellaneous
  • References updated.