III - Administrative Classified
Rules and Groups employed by this XCCDF Profile
-
The IBM Aspera High-Speed Transfer Server must restrict users from using transfer services by default.
<VulnDiscussion>Successful authentication must not automatically give an entity access to an asset or security boundary. The lack of authoriz...Rule Medium Severity -
SRG-NET-000015-ALG-000016
<GroupDescription></GroupDescription>Group -
The IBM Aspera High-Speed Transfer Server must restrict users read, write, and browse permissions by default.
<VulnDiscussion>Successful authentication must not automatically give an entity access to an asset or security boundary. The lack of authoriz...Rule Medium Severity -
SRG-NET-000132-ALG-000087
<GroupDescription></GroupDescription>Group -
The IBM Aspera High-Speed Transfer Server must set the default docroot to an empty folder.
<VulnDiscussion>By restricting the default document root for the Aspera HSTS, this allows for explicit access to be defined on a per user bas...Rule Medium Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.
Capacity
Modules