Skip to content

II - Mission Support Sensitive

Rules and Groups employed by this XCCDF Profile

  • WG360

    Group
  • Symbolic links must not be used in the web content directory tree.

    A symbolic link allows a file or a directory to be referenced using a symbolic name raising a potential hazard if symbolic linkage is made to a sensitive area. When web scripts are executed and sy...
    Rule High Severity
  • WG400

    Group
  • All interactive programs (CGI) must be placed in a designated directory with appropriate permissions.

    CGI scripts represents one of the most common and exploitable means of compromising a web server. By definition, CGI are executable by the operating system of the host server. While access control ...
    Rule Medium Severity
  • WG110

    Group

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules