SV-239713r679245_rule
V-239713
SRG-APP-000223-WSR-000011
VCUI-67-000032
CAT II
10
Navigate to and open /usr/lib/vmware-vsphere-ui/server/conf/context.xml.
Add the following configuration to the <Context> node:
sessionCookiePath="/ui"
Example:
<Context useHttpOnly="true" sessionCookieName="VSPHERE-UI-JSESSIONID" sessionCookiePath="/ui">
At the command prompt, execute the following command:
# xmllint --format /usr/lib/vmware-vsphere-ui/server/conf/context.xml | xmllint --xpath '/Context/@sessionCookiePath' -
Expected result:
sessionCookiePath="/ui"
If the output does not match the expected result, this is a finding.
V-239713
False
VCUI-67-000032
At the command prompt, execute the following command:
# xmllint --format /usr/lib/vmware-vsphere-ui/server/conf/context.xml | xmllint --xpath '/Context/@sessionCookiePath' -
Expected result:
sessionCookiePath="/ui"
If the output does not match the expected result, this is a finding.
M
5334