Skip to content

I - Mission Critical Public

Rules and Groups employed by this XCCDF Profile

  • WG205

    Group
  • The web document (home) directory must be in a separate partition from the web server’s system files.

    Application partitioning enables an additional security measure by securing user traffic under one security context, while managing system and application files under another. Web content is can b...
    Rule Medium Severity
  • WG265

    Group
  • The required DoD banner page must be displayed to authenticated users accessing a DoD private website.

    A consent banner will be in place to make prospective entrants aware that the website they are about to enter is a DoD web site and their activity is subject to monitoring. The document, DoDI 8500....
    Rule Low Severity
  • WG140

    Group
  • Private web servers must require certificates issued from a DoD-authorized Certificate Authority.

    Web sites requiring authentication within the DoD must utilize PKI as an authentication mechanism for web users. Information systems residing behind web servers requiring authorization based on ind...
    Rule Medium Severity
  • WG235

    Group
  • Web Administrators must only use encrypted connections for Document Root directory uploads.

    Logging in to a web server via an unencrypted protocol or service, to upload documents to the web site, is a risk if proper encryption is not utilized to protect the data being transmitted. An enc...
    Rule High Severity
  • WG237

    Group
  • Remote authors or content providers must have all files scanned for viruses and malicious code before uploading files to the Document Root directory.

    Remote web authors should not be able to upload files to the Document Root directory structure without virus checking and checking for malicious or mobile code. A remote web user, whose agency has ...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules