Skip to content

III - Administrative Sensitive

Rules and Groups employed by this XCCDF Profile

  • FIPS 140-1/2 for management to fabric.

    <GroupDescription></GroupDescription>
    Group
  • The SAN is not configured to use FIPS 140-1/2 validated encryption algorithm to protect management-to-fabric communications.

    &lt;VulnDiscussion&gt;The communication between the SAN management consol and the SAN fabric carries sensitive privileged configuration data. This...
    Rule Low Severity
  • Password SAN Management Console and Ports

    <GroupDescription></GroupDescription>
    Group
  • All SAN management consoles and ports are not password protected.

    &lt;VulnDiscussion&gt;Without password protection malicious users can create a denial of service by disrupting the SAN or allow the compromise of s...
    Rule High Severity
  • Default SAN Management Software Password

    <GroupDescription></GroupDescription>
    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules