Rule ID
SV-207494r958870_rule
Version
V2R3
CCIs
VMMs handling data requiring "data at rest" protections must employ cryptographic mechanisms to prevent unauthorized modification of the information at rest. Selection of a cryptographic mechanism is based on the need to protect the integrity of organizational information. The strength of the mechanism is commensurate with the security category and/or classification of the information.
Verify the VMM implements cryptographic mechanisms to prevent unauthorized modification of all information at rest on all VMM components. If it does not, this is a finding.
Configure the VMM to implement cryptographic mechanisms to prevent unauthorized modification of all information at rest on all VMM components.