UCF STIG Viewer Logo

ESX Agent Manager application files must be verified for their integrity.


Overview

Finding ID Version Rule ID IA Controls Severity
V-256680 VCEM-70-000008 SV-256680r918904_rule Medium
Description
Verifying that ESX Agent Manager application code is unchanged from its shipping state is essential for file validation and nonrepudiation of the ESX Agent Manager. There is no reason the MD5 hash of the RPM original files should be changed after installation, excluding configuration files. Satisfies: SRG-APP-000131-WSR-000051, SRG-APP-000357-WSR-000150
STIG Date
VMware vSphere 7.0 vCenter Appliance EAM Security Technical Implementation Guide 2023-06-15

Details

Check Text ( C-60355r918903_chk )
At the command prompt, run the following command:

# rpm -V vmware-eam|grep "^..5......" | grep -v 'c /' | grep -v -E ".installer|.properties|.xml"

If there is any output, this is a finding.
Fix Text (F-60298r888595_fix)
Reinstall the vCenter Server Appliance (VCSA) or roll back to a backup. Modifying the EAM installation files manually is not supported by VMware.