1. Home
  2. Security Hardening
  3. DISA STIG VMware ESXi Server 5 STIG V2R1
  4. GEN002120-ESXI5-000045 – The /etc/shells (or equivalent) file must exist – or equivalent file must exist

GEN002120-ESXI5-000045 – The /etc/shells (or equivalent) file must exist – or equivalent file must exist

Details

The shells file (or equivalent) lists approved default shells. It helps provide layered defense to the security approach by ensuring users cannot change their default shell to an unauthorized shell that may not be secure.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Disable lock down mode.
Enable the ESXi Shell.
= /etc/shells
Execute the following command(s):
# > /etc/shells

Re-enable lock down mode.

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Configuration Management.This control applies to the following type of system VMware.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles