ESXI5-VM-000049 - The system must use secure protocols for virtual serial port access.

Information

Serial ports are interfaces for connecting peripherals to the virtual machine. They are often used on physical systems to provide a direct, low-level connection to the console of a server, and a virtual serial port allows for the same access to a virtual machine. Serial ports allow for low-level access, which often does not have strong controls like logging or privileges.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Use a secure protocol like SSH or Telnets (Telnet with SSL) as opposed to Telnet to access virtual serial ports. Note that SSH is preferred to Telnets.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_VMW_ESXi5_Virtual_Machine_V2R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Group-ID|V-39503, Rule-ID|SV-250720r799622_rule, STIG-ID|ESXI5-VM-000049, STIG-Legacy|SV-51361, STIG-Legacy|V-39503, Vuln-ID|V-250720

Plugin: VMware

Control ID: 26069081579dcd438170e73a3b08fc8edadc4f59fa2e0dd342cb9903f54e74ca