SV-79063r1_rule
V-64573
SRG-APP-000441-WSR-000181
OH12-1X-000328
CAT II
10
1. Open every .conf file (e.g., ssl.conf) included in $DOMAIN_HOME/config/fmwconfig/components/OHS/<componentName>/httpd.conf with an editor that contains an SSL-enabled "<VirtualHost>" directive.
2. Search for the "SecureProxy" directive within an "<IfModule weblogic_module>" at the virtual host configuration scope.
3. Set the "SecureProxy" directive to "On", add the directive if it does not exist.
If using the WebLogic Web Server Proxy Plugin and configuring end-to-end SSL:
1. Open every .conf file (e.g., ssl.conf) included in $DOMAIN_HOME/config/fmwconfig/components/OHS/<componentName>/httpd.conf with an editor that contains an SSL-enabled "<VirtualHost>" directive.
2. Search for the "SecureProxy" directive within an "<IfModule weblogic_module>" at the virtual host configuration scope.
3. If the directive is omitted or is not set to "On", this is a finding.
V-64573
False
OH12-1X-000328
If using the WebLogic Web Server Proxy Plugin and configuring end-to-end SSL:
1. Open every .conf file (e.g., ssl.conf) included in $DOMAIN_HOME/config/fmwconfig/components/OHS/<componentName>/httpd.conf with an editor that contains an SSL-enabled "<VirtualHost>" directive.
2. Search for the "SecureProxy" directive within an "<IfModule weblogic_module>" at the virtual host configuration scope.
3. If the directive is omitted or is not set to "On", this is a finding.
M
2753