STIGQter STIGQter: STIG Summary: Virtual Machine Manager Security Requirements Guide Version: 2 Release: 4 Benchmark Date: 01 Jul 2026:

The VMM must enforce a role-based access control (RBAC) policy over defined subjects and objects.

DISA Rule

SV-279013r1227261_rule

Vulnerability Number

V-279013

Group Title

SRG-OS-000313

Rule Version

SRG-OS-000313-VMM-001145

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the VMM to enforce an RBAC policy over defined subjects and objects.

Check Contents

Verify the VMM is configured to enforce an RBAC policy over defined subjects and objects.

If the VMM does not enforce an RBAC policy over defined subjects and objects, this is a finding.

Vulnerability Number

V-279013

Documentable

False

Rule Version

SRG-OS-000313-VMM-001145

Severity Override Guidance

Verify the VMM is configured to enforce an RBAC policy over defined subjects and objects.

If the VMM does not enforce an RBAC policy over defined subjects and objects, this is a finding.

Check Content Reference

M

Target Key

2924