ESX STIG Script

Just to let everyone know, we posted a new version (1.3) of the ESX_SRRSecure.sh script on the VMTN.
ESX_SRRSecure – Script to allow ESX to pass a DISA Security Readiness Review

For now you still have to edit the file and search for 192.168.10. and replace it with your network id.

Version 1.4 will come soon..

DISA releases official ESX Security Technical Implementation Guide

ESX Server STIG Version 1, Release 1.0

Seems harmless enough on the first pass but if you read carefully you will see the following finding:
(ESX0010: CAT II) The IAO/SA will configure the ESX Server in accordance with the UNIX STIG and Checklist. This is not applicable to ESX Server 3i. The following open findings will NOT [...]