Skip to content

I - Mission Critical Sensitive

Rules and Groups employed by this XCCDF Profile

  • The WebSphere Liberty Server must prohibit the use of cached authenticators after an organization-defined time period.

    <VulnDiscussion>Larger authentication cache timeout values can increase security risks. For example, a user who is revoked can still log in b...
    Rule Medium Severity
  • SRG-APP-000428-AS-000265

    <GroupDescription></GroupDescription>
    Group
  • The WebSphere Liberty Server LTPA keys password must be changed.

    &lt;VulnDiscussion&gt;The default location of the automatically generated Lightweight Third Party Authentication (LTPA) keys file is ${server.outpu...
    Rule Medium Severity
  • SRG-APP-000439-AS-000274

    <GroupDescription></GroupDescription>
    Group
  • The WebSphere Liberty Server must remove all export ciphers to protect the confidentiality and integrity of transmitted information.

    &lt;VulnDiscussion&gt;Export grade encryption suites are not strong and do not meet DoD requirements. The encryption for the session becomes easy f...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules