Check: SRG-OS-000269-VMM-000950
Virtual Machine Manager SRG:
SRG-OS-000269-VMM-000950
(in versions v2 r2 through v1 r3)
Title
In the event of a system failure, the VMM must preserve any information necessary to determine cause of failure and any information necessary to return to operations with least disruption to mission processes. (Cat II impact)
Discussion
Failure to a known state can address safety or security in accordance with the mission/business needs of the organization. Failure to a known secure state helps prevent a loss of confidentiality, integrity, or availability in the event of a failure of the VMM or a component of the system. Preserving VMM state information helps to facilitate VMM restart and return to the operational mode of the organization with less disruption of mission/business processes.
Check Content
Verify the VMM preserves any information necessary, in the event of a system failure, to determine cause of failure and any information necessary to return to operations with least disruption to mission processes. If it does not, this is a finding.
Fix Text
Configure the VMM to preserve any information necessary, in the event of a system failure, to determine cause of failure and any information necessary to return to operations with least disruption to mission processes.
Additional Identifiers
Rule ID: SV-207426r958624_rule
Vulnerability ID: V-207426
Group Title: SRG-OS-000269
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001665 |
Preserve organization-defined system state information in the event of a system failure. |
Controls
Number | Title |
---|---|
SC-24 |
Fail in Known State |