SV-258741r933284_rule
V-258741
SRG-OS-000278-VMM-001000
ESXI-80-000094
CAT II
10
From an ESXi shell, run the following command:
# /usr/lib/vmware/secureboot/bin/secureBoot.py -c
If the output indicates that Secure Boot cannot be enabled, correct the discrepancies and try again.
Once all discrepancies are resolved, the server ESXi is installed on can be updated to enable Secure Boot in the firmware.
To enable Secure Boot in the server's firmware follow the instructions for the specific manufacturer.
From an ESXi shell, run the following command:
# /usr/lib/vmware/secureboot/bin/secureBoot.py -s
If Secure Boot is not "Enabled", this is a finding.
V-258741
False
ESXI-80-000094
From an ESXi shell, run the following command:
# /usr/lib/vmware/secureboot/bin/secureBoot.py -s
If Secure Boot is not "Enabled", this is a finding.
M
5562