Skip to content

IBM WebSphere Traditional V9.x Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-APP-000148-AS-000101

    Group
  • The WebSphere Application Server local file-based user registry must not be used.

    WebSphere does not provide direct audit of changes to the built-in file registry. The built-in file registry must not be used to support user logon accounts. Use an LDAP/AD server and manage user a...
    Rule Medium Severity
  • SRG-APP-000149-AS-000102

    Group
  • The WebSphere Application Server multifactor authentication for network access to privileged accounts must be used.

    Multifactor authentication creates a layered defense and makes it more difficult for an unauthorized person to access the application server. If one factor is compromised or broken, the attacker st...
    Rule Medium Severity
  • SRG-APP-000156-AS-000106

    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules