HPE Nimble must be configured to disable HPE InfoSight.

Severity
Group ID
Group Title
Version
Rule ID
Date
STIG Version
mediumV-252902SRG-APP-000142-NDM-000245HPEN-NM-000221SV-252902r960966_rule2024-06-202

Description

DoD requires that the Mission Owner uses only the cloud services offering listed in either the FedRAMP or DISA PA DoD Cloud Catalog to host Unclassified, public-releasable, DoD information. HPE InfoSight data collection is disabled by default in the HPE Nimble. Users must not enable it.

ℹ️ Check

Navigate to Administration >> Alerts and Monitoring page of the storage array management interface. Verify the checkbox is not checked. If HPE InfoSight is enabled, this is a finding.

✔️ Fix

In HPE Nimble Storage arrays, data collection is disabled by default. Navigate to Administration >> Alerts and Monitoring page of the storage array management interface. Uncheck the checkbox.