SV-78639r1_rule
V-64149
SRG-APP-000015-WSR-000014
OH12-1X-000015
CAT II
10
1. Open every .conf file (e.g., ssl.conf) included in $DOMAIN_HOME/config/fmwconfig/components/OHS/<componentName>/httpd.conf with an editor that contains an SSL-enabled "<VirtualHost>" directive.
2. Search for the "SecureProxy" directive within an "<IfModule weblogic_module>" at the virtual host configuration scope.
3. Set the "SecureProxy" directive to "On", add the directive if it does not exist.
If using the WebLogic Web Server Proxy Plugin and configuring end-to-end SSL:
1. Open every .conf file (e.g., ssl.conf) included in $DOMAIN_HOME/config/fmwconfig/components/OHS/<componentName>/httpd.conf with an editor that contains an SSL-enabled "<VirtualHost>" directive.
2. Search for the "SecureProxy" directive within an "<IfModule weblogic_module>" at the virtual host configuration scope.
3. If the directive is omitted or is not set to "On", this is a finding.
V-64149
False
OH12-1X-000015
If using the WebLogic Web Server Proxy Plugin and configuring end-to-end SSL:
1. Open every .conf file (e.g., ssl.conf) included in $DOMAIN_HOME/config/fmwconfig/components/OHS/<componentName>/httpd.conf with an editor that contains an SSL-enabled "<VirtualHost>" directive.
2. Search for the "SecureProxy" directive within an "<IfModule weblogic_module>" at the virtual host configuration scope.
3. If the directive is omitted or is not set to "On", this is a finding.
M
2753