SV-33183r1_rule
V-26325
WA00550
WA00550 W22
CAT II
10
Disable the TraceEnable directive by setting it to "off".
Locate the Apache httpd.conf file.
Open the httpd.conf file with an editor such as Notepad, and search for the following uncommented directive: TraceEnable
For any enabled TraceEnable directives ensure they are part of the server level configuration (i.e. not nested in a <Directory> or <Location> directive). Also ensure that the TraceEnable directive is set to “Off”.
If the TraceEnable directive is not part of the server level configuration and/or is not set to “off” this is a finding. If the directive does not exist in the conf file this is a finding as the default value is "On".
V-26325
False
WA00550 W22
Locate the Apache httpd.conf file.
Open the httpd.conf file with an editor such as Notepad, and search for the following uncommented directive: TraceEnable
For any enabled TraceEnable directives ensure they are part of the server level configuration (i.e. not nested in a <Directory> or <Location> directive). Also ensure that the TraceEnable directive is set to “Off”.
If the TraceEnable directive is not part of the server level configuration and/or is not set to “off” this is a finding. If the directive does not exist in the conf file this is a finding as the default value is "On".
M
Web Administrator
158