SV-239654r679034_rule
V-239654
SRG-APP-000001-WSR-000001
VCST-67-000003
CAT II
10
Navigate to and open /usr/lib/vmware-sso/vmware-sts/conf/server.xml.
Navigate to each of the <Connector> nodes.
Remove any configuration for "maxPostSize".
At the command prompt, execute the following command:
# xmllint --format /usr/lib/vmware-sso/vmware-sts/conf/server.xml | sed '2 s/xmlns=".*"//g' | xmllint --xpath '/Server/Service/Connector[@port="${bio-custom.http.port}"]/@maxPostSize' -
Expected result:
XPath set is empty
If the output does not match the expected result, this is a finding.
V-239654
False
VCST-67-000003
At the command prompt, execute the following command:
# xmllint --format /usr/lib/vmware-sso/vmware-sts/conf/server.xml | sed '2 s/xmlns=".*"//g' | xmllint --xpath '/Server/Service/Connector[@port="${bio-custom.http.port}"]/@maxPostSize' -
Expected result:
XPath set is empty
If the output does not match the expected result, this is a finding.
M
5333