Skip to content

II - Mission Support Sensitive

Rules and Groups employed by this XCCDF Profile

  • SRG-APP-000141-WSR-000075

    Group
  • OHS must have the LoadModule mime_magic_module directive disabled.

    A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to run on a production DoD system. The web server must provide the capabil...
    Rule Low Severity
  • SRG-APP-000141-WSR-000075

    Group
  • OHS must have the LoadModule negotiation_module directive disabled.

    A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to run on a production DoD system. The web server must provide the capabil...
    Rule Low Severity
  • SRG-APP-000141-WSR-000075

    Group
  • OHS must not have the LanguagePriority directive enabled.

    A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to run on a production DoD system. The web server must provide the capabil...
    Rule Low Severity
  • SRG-APP-000141-WSR-000075

    Group
  • OHS must not have the ForceLanguagePriority directive enabled.

    A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to run on a production DoD system. The web server must provide the capabil...
    Rule Low Severity
  • SRG-APP-000141-WSR-000075

    Group
  • OHS must have the LoadModule status_module directive disabled.

    A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to run on a production DoD system. The web server must provide the capabil...
    Rule Medium Severity
  • SRG-APP-000141-WSR-000075

    Group
  • OHS must have the LoadModule info_module directive disabled.

    A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to run on a production DoD system. The web server must provide the capabil...
    Rule Medium Severity
  • SRG-APP-000141-WSR-000075

    Group
  • OHS must have the LoadModule include_module directive disabled.

    A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to run on a production DoD system. The web server must provide the capabil...
    Rule Medium Severity
  • SRG-APP-000141-WSR-000075

    Group
  • OHS must have the LoadModule autoindex_module directive disabled.

    A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to run on a production DoD system. The web server must provide the capabil...
    Rule Medium Severity
  • SRG-APP-000141-WSR-000075

    Group
  • OHS must have the IndexOptions directive disabled.

    A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to run on a production DoD system. The web server must provide the capabil...
    Rule Medium Severity
  • SRG-APP-000141-WSR-000075

    Group
  • OHS must have the AddIconByEncoding directive disabled.

    A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to run on a production DoD system. The web server must provide the capabil...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules