SV-33009r1_rule
V-13737
WA000-WWA062
WA000-WWA062 W22
CAT II
10
Set LimitRequestFields Directive to a value greater than 0.
Locate the Apache httpd.conf file.
If unable to locate the file, perform a search of the system to find the location of the file.
Open the httpd.conf file with an editor such as notepad, and search for the following uncommented directive: LimitRequestFields
Every enabled LimitRequestFields value needs to be greater than 0. If any directive is set improperly, this is a finding.
Note: This can be set to a really high number (Current max is 32767), it just cannot be unspecified.
V-13737
False
WA000-WWA062 W22
Locate the Apache httpd.conf file.
If unable to locate the file, perform a search of the system to find the location of the file.
Open the httpd.conf file with an editor such as notepad, and search for the following uncommented directive: LimitRequestFields
Every enabled LimitRequestFields value needs to be greater than 0. If any directive is set improperly, this is a finding.
Note: This can be set to a really high number (Current max is 32767), it just cannot be unspecified.
M
Web Administrator
158