III - Administrative Classified
Rules and Groups employed by this XCCDF Profile
-
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the LoadModule info_module directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the LoadModule include_module directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the LoadModule autoindex_module directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the IndexOptions directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the AddIconByEncoding directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the AddIconByType directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the AddIcon directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the DefaultIcon directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the ReadmeName directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the HeaderName directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the IndexIgnore directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the LoadModule dir_module directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Low Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the DirectoryIndex directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Low Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the LoadModule cgi_module directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the LoadModule fastcgi_module disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the LoadModule cgid_module directive disabled for mpm workers.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the IfModule cgid_module directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Low Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the LoadModule mpm_winnt_module directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Low Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the ScriptAlias directive for CGI scripts disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the ScriptSock directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the cgi-bin directory disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have directives pertaining to certain scripting languages removed from virtual hosts.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the LoadModule asis_module directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Low Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the LoadModule imagemap_module directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Low Severity -
SRG-APP-000141-WSR-000075
<GroupDescription></GroupDescription>Group -
OHS must have the LoadModule actions_module directive disabled.
<VulnDiscussion>A web server can provide many features, services, and processes. Some of these may be deemed unnecessary or too unsecure to r...Rule Medium Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.