SV-76851r1_rule
V-62361
SRG-APP-000315-AS-000094
CF11-01-000017
CAT II
10
Navigate to the "Allowed IP Addresses" page under the "Security" menu. Remove all entries from the list under the "Allowed IP Addresses for Exposed Services" section that do not require access to ColdFusion services.
Within the Administrator Console, navigate to the "Allowed IP Addresses" page under the "Security" menu. If there are any entries in the "Allowed IP Addresses for Exposed Services" section, validate with the SA that the IP addresses and subnets specified require access.
If any of the IP addresses or subnets specified do not require access, this is a finding.
V-62361
False
CF11-01-000017
Within the Administrator Console, navigate to the "Allowed IP Addresses" page under the "Security" menu. If there are any entries in the "Allowed IP Addresses for Exposed Services" section, validate with the SA that the IP addresses and subnets specified require access.
If any of the IP addresses or subnets specified do not require access, this is a finding.
M
2661