STIGQter STIGQter: STIG Summary: Virtual Machine Manager Security Requirements Guide Version: 2 Release: 4 Benchmark Date: 01 Jul 2026:

The VMM must allow only the ISSM (or individuals or roles appointed by the ISSM) to select which auditable events are to be audited.

DISA Rule

SV-207367r958444_rule

Vulnerability Number

V-207367

Group Title

SRG-OS-000063

Rule Version

SRG-OS-000063-VMM-000310

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the VMM to allow only the ISSM (or individuals or roles appointed by the ISSM) to select which auditable events are to be audited.

Check Contents

Verify the VMM allows only the ISSM (or individuals or roles appointed by the ISSM) to select which auditable events are to be audited.

If it does not, this is a finding.

Vulnerability Number

V-207367

Documentable

False

Rule Version

SRG-OS-000063-VMM-000310

Severity Override Guidance

Verify the VMM allows only the ISSM (or individuals or roles appointed by the ISSM) to select which auditable events are to be audited.

If it does not, this is a finding.

Check Content Reference

M

Target Key

2924