Skip to content

I - Mission Critical Public

Rules and Groups employed by this XCCDF Profile

  • SRG-APP-000223-WSR-000011

    <GroupDescription></GroupDescription>
    Group
  • Cookies exchanged between any Automation Controller NGINX web server and any client, such as session cookies, must have security settings that disallow cookie access outside the originating Automation Controller NGINX web server and hosted application.

    &lt;VulnDiscussion&gt;It is important that cookies exchanged between any Automation Controller NGINX webserver and any client have security setting...
    Rule Medium Severity
  • SRG-APP-000233-WSR-000146

    <GroupDescription></GroupDescription>
    Group
  • The Automation Controller NGINX web server document directory must be in a separate partition from the web server's system files.

    &lt;VulnDiscussion&gt;It is important that Automation Controller NGINX web server restricts the ability of clients to launch denial-of-service (DoS...
    Rule Medium Severity
  • SRG-APP-000251-WSR-000157

    <GroupDescription></GroupDescription>
    Group
  • The Automation Controller NGINX web server must limit the character set used for data entry.

    &lt;VulnDiscussion&gt;It is important that Automation Controller NGINX web server limit the character set used for data entry and disallow Unicode ...
    Rule Medium Severity
  • SRG-APP-000266-WSR-000142

    <GroupDescription></GroupDescription>
    Group
  • The Automation Controller NGINX web server must display a default hosted application web page, not a directory listing, when a requested web page cannot be found.

    &lt;VulnDiscussion&gt;It is important that Automation Controller NGINX web server display a default hosted application web paged and not a director...
    Rule Medium Severity
  • SRG-APP-000266-WSR-000160

    <GroupDescription></GroupDescription>
    Group
  • Debugging and trace information, within Automation Controller NGINX web server, used to diagnose the web server must be disabled.

    &lt;VulnDiscussion&gt;It is important that Automation Controller NGINX web server debugging and trace information used to diagnose the web server i...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules