STIGQter STIGQter: STIG Summary: VMware vRealize Operations Manager 6.x Application Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 28 Sep 2018:

The vRealize Operations server must use an enterprise user management system to uniquely identify and authenticate users (or processes acting on behalf of organizational users).

DISA Rule

SV-98855r1_rule

Vulnerability Number

V-88205

Group Title

SRG-APP-000148-AS-000101

Rule Version

VROM-AP-000195

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure vROps to use an enterprise user management system and document this in the site configuration control policy.

Check Contents

Obtain the site configuration control policy from the ISSO.

Review site procedures to determine if an enterprise management system is used to uniquely identify and authenticate users.

If an enterprise management solution is not used, this is a finding.

Vulnerability Number

V-88205

Documentable

False

Rule Version

VROM-AP-000195

Severity Override Guidance

Obtain the site configuration control policy from the ISSO.

Review site procedures to determine if an enterprise management system is used to uniquely identify and authenticate users.

If an enterprise management solution is not used, this is a finding.

Check Content Reference

M

Target Key

3453

Comments