SRG-OS-99999-ESXI5-000150 - SAN resources must be masked and zoned appropriately.

Information

SAN activity must be segregated via zoning and LUN masking. The potential for any SAN client to mount and access any SAN drive will result in disk resource contention and data corruption. Zoning and LUN masking must be used to isolate and protect SAN storage devices. Use of zoning must also take into account any host groups on the SAN device(s).

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

If SAN devices are used, a vendor-specific procedure must be developed and documented to mask/zone host LUNs.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_VMW_ESXi5_Server_V2R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|III, CCI|CCI-000366, Group-ID|V-39304, Rule-ID|SV-250666r798997_rule, STIG-ID|SRG-OS-99999-ESXI5-000150, STIG-Legacy|SV-51120, STIG-Legacy|V-39304, Vuln-ID|V-250666

Plugin: VMware

Control ID: a403ec372d4b0f62b1a07385cbc2125aade9cb23b873af923559fd0532831333