SV-213540r615939_rule
V-213540
SRG-APP-000343-AS-000030
JBOS-AS-000480
CAT II
10
Launch the jboss-cli management interface substituting standalone or domain for <CONFIG> based upon the server installation.
<JBOSS_HOME>/<CONFIG>/bin/jboss-cli
connect to the server and run the following command:
/core-service=management/access=audit/logger=audit-log:write-attribute(name=enabled,value=true)
Log on to the OS of the JBoss server with OS permissions that allow access to JBoss.
Using the relevant OS commands and syntax, cd to the <JBOSS_HOME>/bin/ folder.
Run the jboss-cli script.
Connect to the server and authenticate.
Run the command:
/core-service=management/access=audit:read-resource(recursive=true)
Under the "logger" => {audit-log} section of the returned response:
If "enabled" => false, this is a finding
V-213540
False
JBOS-AS-000480
Log on to the OS of the JBoss server with OS permissions that allow access to JBoss.
Using the relevant OS commands and syntax, cd to the <JBOSS_HOME>/bin/ folder.
Run the jboss-cli script.
Connect to the server and authenticate.
Run the command:
/core-service=management/access=audit:read-resource(recursive=true)
Under the "logger" => {audit-log} section of the returned response:
If "enabled" => false, this is a finding
M
3987