Lookup Service application files must be verified for their integrity.
Severity | Group ID | Group Title | Version | Rule ID | Date | STIG Version |
---|---|---|---|---|---|---|
medium | V-256713 | SRG-APP-000131-WSR-000051 | VCLU-70-000008 | SV-256713r888730_rule | 2023-06-15 | 1 |
Description |
---|
Verifying the Lookup Service application code is unchanged from its shipping state is essential for file validation and nonrepudiation of the Lookup Service. There is no reason the MD5 hash of the RPM original files should be changed after installation, excluding configuration files. |
ℹ️ Check |
---|
At the command prompt, run the following command: # rpm -V vmware-lookupsvc|grep "^..5......"|grep -E "\.war|\.jar|\.sh|\.py" If there is any output, this is a finding. |
✔️ Fix |
---|
Reinstall the vCenter Server Appliance (VCSA) or roll back to a backup. VMware does not support modifying the Lookup Service installation files manually. |