PHTN-67-000032 - The Photon operating system must only allow installation of packages signed by VMware.

Information

Installation of any non-trusted software, patches, service packs, device drivers, or operating system components can significantly affect the overall security of the operating system. This requirement ensures the software has not been tampered with and has been provided by VMware.

Solution

Confirm with VMware support that this package is not supported (for potential package additions after STIG publication).

At the command line, execute the following command:

# rpm -e <package-name-from-check>

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_VMW_vSphere_6-7_Y23M07_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7a., CAT|II, CCI|CCI-000381, Rule-ID|SV-239104r675120_rule, STIG-ID|PHTN-67-000032, Vuln-ID|V-239104

Plugin: Unix

Control ID: 521b2428018a3bffd5efeb0a0ddc75dc3d081bc6cc8ae9c029154984b1676a65