Dell Private Cloud: Security Technical Implementation Guide (STIG) on Dell Private Cloud Extension
Zusammenfassung: Security Technical Implementation Guide (STIG) Hardening using the Dell Compliance Engine (DCE).
Weisungen
Dell Compliance Engine (DCE) version 1.0.000 is now available for download for supported builds. This is the production release of the Dell Compliance Engine for Dell Private Cloud - VMware.
The Dell Compliance Engine provides automated scan and remediation capabilities and manual procedures. These features enable Dell Private Cloud customers to harden their Dell Private Cloud Extension component. This is done in compliance with applicable Department of Defense (DoD) Security Technical Implementation Guidelines (STIG) requirements.
The Dell Compliance Engine hardens the Dell Private Cloud Extension component, addressing the following STIG/SRGs:
- SUSE Linux Enterprise Server STIG
- RKE2 Kubernetes runtime STIG
- Network Device Management configurations SRG
See the Support Matrix in the Dell Private Cloud - VMware STIG Hardening Guide for qualified versions.
The Dell Compliance Engine does not support:
- Any other components outside the Dell Private Cloud Extension VM (such as VMware vCenter and ESXi hosts)
Users can implement the Dell Compliance Engine in the following ways:
- Self-installation of the Dell Compliance Engine (see CAUTION below)
The Dell Compliance Engine package and documentation are available for download from the following links. Log into a support account is required to access:
- Dell Private Cloud - VMware STIG Hardening Guide
- Dell Compliance Engine Package (v1.0.000)
- Dell Compliance Engine Package Signature File
- Dell Compliance Engine Package SHA512 Hash File
- Dell Compliance Engine Metadata (v1.0.000)
- Dell Compliance Engine Metadata Signature File
- Dell Compliance Engine Metadata SHA512 Hash File
The downloadable Dell Compliance Engine package is for self-installation only. If you are uncertain about the execution methods, contact your Dell Technologies sales team representative for a custom deployment services quote.
The user assumes all risks that are associated with hardening the Dell Private Cloud -VMware environment when choosing to install the Dell Compliance Engine. Dell Technologies assumes no responsibility and shall not be liable for system failures or loss of data due to Dell Compliance Engine execution in the user's environment. Performing the STIG hardening procedures incorrectly and without a backout plan may put the environment at risk of having to perform a factory reset. This could ultimately result in data loss.