II - Mission Support Sensitive
Rules and Groups employed by this XCCDF Profile
-
SRG-APP-000516-WSR-000174
Group -
A private OHS list of CAs in a trust hierarchy must lead to an authorized DoD PKI Root CA.
A PKI certificate is a digital identifier that establishes the identity of an individual or a platform. A server that has a certificate provides users with third-party confirmation of authenticity....Rule Medium Severity -
SRG-APP-000516-WSR-000174
Group -
OHS must have the ScoreBoardFile directive disabled.
The ScoreBoardFile directive sets a file path which the server will use for Inter-Process Communication (IPC) among the Apache processes. If the directive is specified, then Apache will use the con...Rule Medium Severity -
SRG-APP-000516-WSR-000174
Group -
The OHS document root directory must not be on a network share.
Sharing of web server content is a security risk when a web server is involved. Users accessing the share anonymously could experience privileged access to the content of such directories. Network ...Rule Medium Severity -
SRG-APP-000516-WSR-000174
Group -
The OHS server root directory must not be on a network share.
Sharing of the web server directory where the executables are stored is a security risk when a web server is involved. Users that have access to the share may not be administrative users. These u...Rule Medium Severity -
SRG-APP-000516-WSR-000174
Group -
Symbolic links must not be used in the web content directory tree.
A symbolic link allows a file or a directory to be referenced using a symbolic name raising a potential hazard if symbolic linkage is made to a sensitive area. When web scripts are executed and sym...Rule High Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.