Skip to content

The vCenter Server user roles must be verified.

An XCCDF Rule

Description

Users and service accounts must only be assigned privileges they require. Least privilege requires that these privileges must only be assigned if needed to reduce risk of confidentiality, availability, or integrity loss. Satisfies: SRG-APP-000211, SRG-APP-000233, SRG-APP-000380

ID
SV-258921r961095_rule
Version
VCSA-80-000095
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

To update a user's or group's permissions to an existing role with reduced permissions, do the following:

From the vSphere Client, go to Administration >> Access Control >> Global Permissions.

Select the user or group, click the pencil button, change the assigned role, and click "OK".