SV-79039r1_rule
V-64549
SRG-APP-000439-WSR-000151
OH12-1X-000312
CAT II
10
1. Open every .conf file (e.g., ssl.conf) included in $DOMAIN_HOME/config/fmwconfig/components/OHS/<componentName>/httpd.conf with an editor that contains an SSL-enabled "<VirtualHost>" directive.
2. Search for the "SecureProxy" directive within an "<IfModule weblogic_module>" at the virtual host configuration scope.
3. Set the "SecureProxy" directive to "On", add the directive if it does not exist.
If using the WebLogic Web Server Proxy Plugin and configuring end-to-end SSL:
1. Open every .conf file (e.g., ssl.conf) included in $DOMAIN_HOME/config/fmwconfig/components/OHS/<componentName>/httpd.conf with an editor that contains an SSL-enabled "<VirtualHost>" directive.
2. Search for the "SecureProxy" directive within an "<IfModule weblogic_module>" at the virtual host configuration scope.
3. If the directive is omitted or is not set to "On", this is a finding.
V-64549
False
OH12-1X-000312
If using the WebLogic Web Server Proxy Plugin and configuring end-to-end SSL:
1. Open every .conf file (e.g., ssl.conf) included in $DOMAIN_HOME/config/fmwconfig/components/OHS/<componentName>/httpd.conf with an editor that contains an SSL-enabled "<VirtualHost>" directive.
2. Search for the "SecureProxy" directive within an "<IfModule weblogic_module>" at the virtual host configuration scope.
3. If the directive is omitted or is not set to "On", this is a finding.
M
2753