1. Home
  2. Security Hardening
  3. DISA STIG VMware vSphere Virtual Machine 6.x V1R1
  4. VMCH-06-000043 – The system must use templates to deploy VMs whenever possible.

VMCH-06-000043 – The system must use templates to deploy VMs whenever possible.

Details

By capturing a hardened base operating system image (with no applications installed) in a template, ensure all virtual machines are created with a known baseline level of security. Then use this template to create other, application-specific templates, or use the application template to deploy virtual machines. Manual installation of the OS and applications into a VM introduces the risk of misconfiguration due to human or process error.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Create hardened virtual machine templates to use for OS deployments.

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Configuration Management.This control applies to the following type of system VMware.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles