Skip to content

VMware vSphere 7.0 vCenter Appliance RhttpProxy Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-APP-000315-WSR-000003

    <GroupDescription></GroupDescription>
    Group
  • Envoy must exclusively use the HTTPS protocol for client connections.

    &lt;VulnDiscussion&gt;Remotely accessing vCenter via Envoy involves sensitive information going over the wire. To protect the confidentiality and i...
    Rule Medium Severity
  • SRG-APP-000358-WSR-000063

    <GroupDescription></GroupDescription>
    Group
  • Envoy (rhttpproxy) log files must be shipped via syslog to a central log server.

    &lt;VulnDiscussion&gt;Envoy produces several logs that must be offloaded from the originating system. This information can then be used for diagnos...
    Rule Medium Severity
  • SRG-APP-000358-WSR-000063

    <GroupDescription></GroupDescription>
    Group
  • Envoy log files must be shipped via syslog to a central log server.

    &lt;VulnDiscussion&gt;Envoy rsyslog configuration is included in the "VMware-visl-integration" package and unpacked to "/etc/vmware-syslog/vmware-s...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules