Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Dell VxRail: Security Technical Implementation Guide on VxRail

Summary: Dell VxRail Security Technical Implementation Guide (STIG) on VxRail.

This article may have been automatically translated. If you have any feedback regarding its quality, please let us know using the form at the bottom of this page.

Article Content


Instructions

VxRail STIG Hardening Package version 2.4.000 is now available for download for supported builds.  
The VxRail STIG Hardening Package contains scripts and manual procedures which enable VxRail customers to harden their VxRail in compliance with relevant Department of Defense (DoD) Security Technical Implementation Guidelines (STIG) requirements.

What’s new:

  • Support for VxRail 2-node cluster
  • Support for Stretched Cluster with virtual witness
  • Enhanced logging

Updates:

  • SUSE Linux Enterprise Server (SLES) 15 STIG V1, Release 12 (Published 22 January 2024)
  • Apache Tomcat Application Server 9 STIG V2, Release 7 (Published 22 January 2024)
  • PostgreSQL 9.x STIG V2, Release 4 (Published 22 January 2024)
  • VMware vSphere 7.0 vCenter Appliance STIG V1, Release 3 (Published 24 January 2024)
    • VMware vSphere 7.0 vCenter STIG
    • VMware vSphere 7.0 Virtual Machine STIG

VxRail Support:

The VxRail STIG Hardening Package supports standard VxRail deployments.

The following cluster or deployment types are not supported:

  • VxRail stretched cluster with a physical witness node
  • VxRail 2-node vSan based on VxRail VD Series (ruggedized) nodes
  • VxRail 8.x
  • VxRail 4.7.x 
  • VxRail STIG hardening for resource management software frequently operated alongside VxRail, such as VCF, NSX-V, NSX-T, and SDDC Manager

 

Users can implement the STIG Hardening Package in one of two ways:

  • Dell Deployment Services installation of the STIG Hardening Package (see CAUTION below)

    • If you prefer the VxRail STIG Hardening Package to be installed as a service, contact your Dell Technologies sales team representative for a custom deployment services quote.

  • Self-installation of the STIG Hardening Package (see CAUTION below)

    • The VxRail STIG Hardening Package and documentation are available for download from the following links:

    • The downloadable STIG Hardening Package is for self-installation only. The Support Services team is not authorized to provide instructional information about STIG Hardening. After reviewing the STIG Hardening Package documentation, if you are uncertain about the execution methods, we recommend contacting your Dell Technologies sales team representative for a custom deployment services quote.
       
     
    CAUTION: The user assumes all risks that are associated with hardening the VxRail environment when choosing to install the VxRail STIG Hardening Package. Dell Technologies assumes no responsibility and shall not be liable for system failures or loss of data due to VxRail STIG Hardening Package execution in the user's environment. Performing the VxRail STIG Hardening procedures incorrectly and without a backout plan may put the VxRail environment at risk of having to perform a factory reset. This could ultimately result in data loss.

     

Article Properties


Affected Product

VxRail Appliance Series

Product

VxRail Appliance Family, VxRail Appliance Series, VxRail Software

Last Published Date

21 May 2024

Version

36

Article Type

How To