Skip to content

Red Hat Ansible Automation Controller Application Server Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • Automation Controller must be configured to use an enterprise user management system.

    <VulnDiscussion>Unauthenticated application servers render the organization subject to exploitation. Therefore, application servers must be u...
    Rule Medium Severity
  • SRG-APP-000153-AS-000104

    <GroupDescription></GroupDescription>
    Group
  • Automation Controller must be configured to authenticate users individually, prior to using a group authenticator.

    &lt;VulnDiscussion&gt;Default superuser accounts, such as "root", are considered group authenticators. In the case of Automation Controller this is...
    Rule Medium Severity
  • SRG-APP-000172-AS-000121

    <GroupDescription></GroupDescription>
    Group
  • Automation Controller must utilize encryption when using LDAP for authentication.

    &lt;VulnDiscussion&gt;To avoid access with malicious intent, passwords will need to be protected at all times. This includes transmission where pas...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules