Skip to content

III - Administrative Sensitive

Rules and Groups employed by this XCCDF Profile

  • The Horizon Connection Server must limit access to the global configuration privilege.

    <VulnDiscussion>The Horizon Connection Server comes with pre-defined privileges that can be combined in any combination into a role. That rol...
    Rule Medium Severity
  • SRG-APP-000175-AS-000124

    <GroupDescription></GroupDescription>
    Group
  • The Horizon Connection Server must perform full path validation on server-to-server TLS connection certificates.

    &lt;VulnDiscussion&gt;The Horizon Connection Server performs certificate revocation checking on its own certificate and on those of the security se...
    Rule Medium Severity
  • SRG-APP-000175-AS-000124

    <GroupDescription></GroupDescription>
    Group
  • The Horizon Connection Server must validate client and administrator certificates.

    &lt;VulnDiscussion&gt;The Horizon Connection Server can be configured to check the revocation status of PKI certificates over both OCSP and CRL. Th...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules