ESXI5-VM-000050 - The system must use templates to deploy VMs whenever possible

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

By capturing a hardened base operating system image (with no applications installed) in a template, ensure all virtual machines are created with a known baseline level of security. Then use this template to create other, application-specific templates, or use the application template to deploy virtual machines. Manual installation of the OS and applications into a VM introduces the risk of misconfiguration due to human or process error.

Solution

Hardened, patched templates must be used for VM creation, properly configured OS deployments and applications. Applications dependent on VM-specific information must also use hardened, patched templates

See Also

http://iasecontent.disa.mil/stigs/zip/U_ESXi5_Virtual_Machine_V1R7_STIG.zip

Item Details

References: CAT|III, CCI|CCI-000366, Group-ID|V-39504, Rule-ID|SV-51362r1_rule, STIG-ID|ESXI5-VM-000050, Vuln-ID|V-39504

Plugin: VMware

Control ID: 1ea40a74aa83c6feef4f2a0eaa58030069c23d26bd271265bd791386dc003b9a