Skip to content

APACHE 2.2 Site for UNIX Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • WA00620

    Group
  • WG360

    Group
  • WG400

    Group
  • WG110

    Group
  • The number of allowed simultaneous requests must be set.

    Resource exhaustion can occur when an unlimited number of concurrent requests are allowed on a web site, facilitating a denial of service attack. Mitigating this kind of attack will include limitin...
    Rule Medium Severity
  • WG170

    Group
  • Each readable web document directory must contain either a default, home, index, or equivalent file.

    The goal is to completely control the web users experience in navigating any portion of the web document root directories. Ensuring all web content directories have at least the equivalent of an in...
    Rule Low Severity
  • WG230

    Group
  • Web server administration must be performed over a secure path or at the local console.

    Logging into a web server remotely using an unencrypted protocol or service when performing updates and maintenance is a major risk. Data, such as user account, is transmitted in plaintext and can...
    Rule High Severity
  • WG240

    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules