VCST-67-000008 - The Security Token Service application files must be verified for their integrity.

Information

Verifying that the Security Token Service application code is unchanged from its shipping state is essential for file validation and non-repudiation of the Security Token Service. There is no reason the MD5 hash of the rpm original files should be changed after installation, excluding configuration files.

Satisfies: SRG-APP-000131-WSR-000051, SRG-APP-000357-WSR-000150

Solution

Connect to the PSC, whether external or embedded.

Reinstall the VCSA or roll back to a snapshot.

Modifying the Security Token Service installation files manually is not supported by VMware.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_VMW_vSphere_6-7_Y23M07_STIG.zip

Item Details

Category: AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

References: 800-53|AU-4, 800-53|CM-5(3), CAT|II, CCI|CCI-001749, CCI|CCI-001849, Rule-ID|SV-239659r879584_rule, STIG-ID|VCST-67-000008, Vuln-ID|V-239659

Plugin: Unix

Control ID: 5d6c5bcef0b53574196319bc7051dc835fbeff0c83ceea0c3cb2f895577bcb49