Skip to content

I - Mission Critical Public

Rules and Groups employed by this XCCDF Profile

  • SRG-APP-000141-WSR-000075

    <GroupDescription></GroupDescription>
    Group
  • An IIS Server configured to be a SMTP relay must require authentication.

    &lt;VulnDiscussion&gt;Anonymous SMTP relays are strictly prohibited. An anonymous SMTP relay can be a vector for many types of malicious activity n...
    Rule Medium Severity
  • SRG-APP-000266-WSR-000159

    <GroupDescription></GroupDescription>
    Group
  • HTTPAPI Server version must be removed from the HTTP Response Header information.

    &lt;VulnDiscussion&gt;HTTP Response Headers contain information that could enable an attacker to gain access to an information system. Failure to p...
    Rule Low Severity
  • SRG-APP-000266-WSR-000159

    <GroupDescription></GroupDescription>
    Group
  • ASP.NET version must be removed from the HTTP Response Header information.

    &lt;VulnDiscussion&gt;HTTP Response Headers contain information that could enable an attacker to gain access to an information system. Failure to p...
    Rule Low Severity
  • SRG-APP-000141-WSR-000015

    <GroupDescription></GroupDescription>
    Group
  • The Request Smuggling filter must be enabled.

    &lt;VulnDiscussion&gt;Security scans show Request Smuggling vulnerability on IIS server. The vulnerability allows a remote attacker to perform HTT...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules