VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 Security Technical Implementation Guide
Rules, Groups, and Values defined within the XCCDF Benchmark
-
The Photon operating system must disable the debug-shell service.
<VulnDiscussion>The debug-shell service is intended to diagnose systemd related boot issues with various systemctl commands. Once enabled and...Rule Medium Severity -
The Photon operating system must include root when automatically locking an account until the locked account is released by an administrator when three unsuccessful logon attempts occur during a 15-minute time period.
<VulnDiscussion>By limiting the number of failed logon attempts, the risk of unauthorized system access via user password guessing, otherwise...Rule Medium Severity -
SRG-OS-000021-GPOS-00005
<GroupDescription></GroupDescription>Group -
The Photon operating system must persist lockouts between system reboots.
<VulnDiscussion>By limiting the number of failed logon attempts, the risk of unauthorized system access via user password guessing, otherwise...Rule Medium Severity -
SRG-OS-000069-GPOS-00037
<GroupDescription></GroupDescription>Group -
The Photon operating system must be configured to use the pam_pwquality.so module.
<VulnDiscussion>Use of a complex password helps to increase the time and resources required to compromise the password. Password complexity, ...Rule Medium Severity -
SRG-OS-000366-GPOS-00153
<GroupDescription></GroupDescription>Group -
The Photon operating system TDNF package management tool must cryptographically verify the authenticity of all software packages during installation for all repos.
<VulnDiscussion>Installation of any nontrusted software, patches, service packs, device drivers, or operating system components can significa...Rule High Severity -
SRG-OS-000032-GPOS-00013
<GroupDescription></GroupDescription>Group -
The Photon operating system must configure the Secure Shell (SSH) SyslogFacility.
<VulnDiscussion>Automated monitoring of remote access sessions allows organizations to detect cyberattacks and ensure ongoing compliance with...Rule Medium Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.