Red Hat Ansible Automation Controller Web Server Security Technical Implementation Guide
Rules, Groups, and Values defined within the XCCDF Benchmark
-
Cookies exchanged between any Automation Controller NGINX web server and any client, such as session cookies, must have security settings that disallow cookie access outside the originating Automation Controller NGINX web server and hosted application.
It is important that cookies exchanged between any Automation Controller NGINX webserver and any client have security settings that do not allow cookie access outside the originating Automation Con...Rule Medium Severity -
The Automation Controller NGINX web server must limit the character set used for data entry.
It is important that Automation Controller NGINX web server limit the character set used for data entry and disallow Unicode use in hosted applications to avoid application compromise. Definition o...Rule Medium Severity -
Debugging and trace information, within Automation Controller NGINX web server, used to diagnose the web server must be disabled.
It is important that Automation Controller NGINX web server debugging and trace information used to diagnose the web server is disabled, because debugging information can yield information about th...Rule Medium Severity -
The Automation Controller NGINX web server application, libraries, and configuration files must only be accessible to privileged users.
Automation Controller NGINX web servers can be modified through parameter modification, patch installation, upgrades to the web server or modules, and security parameter changes. With each of these...Rule Medium Severity -
The Automation Controller NGINX web server must employ cryptographic mechanisms (TLS/DTLS/SSL) to prevent the unauthorized disclosure of information during transmission.
Preventing the disclosure of transmitted information requires that the Automation Controller web server take measures to employ some form of cryptographic mechanism in order to protect the informat...Rule High Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.