Skip to content

APACHE 2.2 Site for UNIX Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • A web site must not contain a robots.txt file.

    <VulnDiscussion>Search engines are constantly at work on the Internet. Search engines are augmented by agents, often referred to as spiders ...
    Rule Medium Severity
  • WG340

    <GroupDescription></GroupDescription>
    Group
  • A private web server must utilize an approved TLS version.

    &lt;VulnDiscussion&gt;Transport Layer Security (TLS) encryption is a required security setting for a private web server. Encryption of private inf...
    Rule Medium Severity
  • WG350

    <GroupDescription></GroupDescription>
    Group
  • A private web server will have a valid DoD server certificate.

    &lt;VulnDiscussion&gt;This check verifies that DoD is a hosted web site's CA. The certificate is actually a DoD-issued server certificate used by t...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules