STIGQter STIGQter: STIG Summary: Virtual Machine Manager Security Requirements Guide Version: 2 Release: 4 Benchmark Date: 01 Jul 2026:

The VMM must implement NSA-approved cryptography to protect classified information in accordance with applicable federal laws, Executive Orders, directives, policies, regulations, and standards.

DISA Rule

SV-207488r987791_rule

Vulnerability Number

V-207488

Group Title

SRG-OS-000396

Rule Version

SRG-OS-000396-VMM-001590

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the VMM to implement NSA-approved cryptography to protect classified information in accordance with applicable federal laws, Executive Orders, directives, policies, regulations, and standards.

Check Contents

Verify the VMM implements NSA-approved cryptography to protect classified information in accordance with applicable federal laws, Executive Orders, directives, policies, regulations, and standards.

If it does not, this is a finding.

Vulnerability Number

V-207488

Documentable

False

Rule Version

SRG-OS-000396-VMM-001590

Severity Override Guidance

Verify the VMM implements NSA-approved cryptography to protect classified information in accordance with applicable federal laws, Executive Orders, directives, policies, regulations, and standards.

If it does not, this is a finding.

Check Content Reference

M

Target Key

2924