Skip to content

Red Hat Ansible Automation Controller Web Server Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • The Automation Controller servers must use encrypted communication for all channels given the high impact of those services to an organization's infrastructure.

    The Automation Controller communicates information about configuration of other information systems through its web interface and API, storing records about this information in a database. Although...
    Rule Medium Severity
  • Expansion modules must be fully reviewed, tested, and signed before they can exist on a production Automation Controller NGINX front-end web server.

    In the case of a production web server, areas for content development and testing will not exist, as this type of content is only permissible on a development website. The process of developing on...
    Rule Medium Severity
  • All Automation Controller NGINX front-end web servers must not perform user management for hosted applications.

    Web servers require enterprise-wide user management capability in order to prevent unauthorized access, with features like attempt lockouts and password complexity requirements. Unauthorized acces...
    Rule Medium Severity
  • All Automation Controller NGINX web servers must have Web Distributed Authoring (WebDAV) disabled.

    Automation Controller NGINX web servers can be installed with functionality that, just by its nature, is not secure. Web Distributed Authoring (WebDAV) is an extension to the HTTP protocol that, wh...
    Rule Medium Severity
  • All Automation Controller NGINX web servers must be configured to use a specified IP address and port.

    From a security perspective, it is important that all Automation Controller NGINX web servers are configured to use a specified IP address and port because “listening” on all IP addresses poses a v...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules