Skip to content

JBoss Enterprise Application Platform 6.3 Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • The JBoss server must be configured to use DoD- or CNSS-approved PKI Class 3 or Class 4 certificates.

    Class 3 PKI certificates are used for servers and software signing rather than for identifying individuals. Class 4 certificates are used for business-to-business transactions. Utilizing unapproved...
    Rule Medium Severity
  • SRG-APP-000515-AS-000203

    Group
  • SRG-APP-000516-AS-000237

    Group
  • The JBoss server must be configured to bind the management interfaces to only management networks.

    JBoss provides multiple interfaces for accessing the system. By default, these are called "public" and "management". Allowing non-management traffic to access the JBoss management interface incre...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules