SV-239675r679097_rule
V-239675
SRG-APP-000266-WSR-000159
VCST-67-000024
CAT II
10
Navigate to and open /usr/lib/vmware-sso/vmware-sts/conf/server.xml.
Locate the following Host block:
<Host appBase="webapps" ...>
...
</Host>
Inside this block, add the following on a new line:
<Valve className="org.apache.catalina.valves.ErrorReportValve" showReport="false" showServerInfo="false" />
At the command prompt, execute the following command:
# xmllint --format /usr/lib/vmware-sso/vmware-sts/conf/server.xml | sed '2 s/xmlns=".*"//g' | xmllint --xpath '/Server/Service/Engine/Host/Valve[@className="org.apache.catalina.valves.ErrorReportValve"]' -
Expected result:
<Valve className="org.apache.catalina.valves.ErrorReportValve" showReport="false" showServerInfo="false"/>
If the output does not match the expected result, this is a finding.
V-239675
False
VCST-67-000024
At the command prompt, execute the following command:
# xmllint --format /usr/lib/vmware-sso/vmware-sts/conf/server.xml | sed '2 s/xmlns=".*"//g' | xmllint --xpath '/Server/Service/Engine/Host/Valve[@className="org.apache.catalina.valves.ErrorReportValve"]' -
Expected result:
<Valve className="org.apache.catalina.valves.ErrorReportValve" showReport="false" showServerInfo="false"/>
If the output does not match the expected result, this is a finding.
M
5333