SV-33226r1_rule
V-26323
WA00540
WA00540 A22
CAT II
10
Edit the httpd.conf file and set the root directory directive as follows:
Directory
Order deny,allow
Deny from all
Enter the following command:
more /usr/local/Apache2.2/conf/httpd.conf.
Review the httpd.conf file and search for the following directive:
Directory
For every root directory entry (i.e. <Directory />) ensure the following exists; if not, this is a finding.
Order deny,allow
Deny from all
If the statement above is not found in the root directory statement, this is a finding.
If Allow directives are included in the root directory statement, this is a finding.
V-26323
False
WA00540 A22
Enter the following command:
more /usr/local/Apache2.2/conf/httpd.conf.
Review the httpd.conf file and search for the following directive:
Directory
For every root directory entry (i.e. <Directory />) ensure the following exists; if not, this is a finding.
Order deny,allow
Deny from all
If the statement above is not found in the root directory statement, this is a finding.
If Allow directives are included in the root directory statement, this is a finding.
M
Web Administrator
158