SV-79077r1_rule
V-64587
SRG-APP-000442-WSR-000182
OH12-1X-000335
CAT II
10
1. Open every .conf file (e.g., ssl.conf) included in $DOMAIN_HOME/config/fmwconfig/components/OHS/<componentName>/httpd.conf with an editor that contains an SSL-enabled "<VirtualHost>" directive.
2. Search for the "SecureProxy" directive within an "<IfModule weblogic_module>" at the virtual host configuration scope.
3. Set the "SecureProxy" directive to "On", add the directive if it does not exist.
If using the WebLogic Web Server Proxy Plugin and configuring end-to-end SSL:
1. Open every .conf file (e.g., ssl.conf) included in $DOMAIN_HOME/config/fmwconfig/components/OHS/<componentName>/httpd.conf with an editor that contains an SSL-enabled "<VirtualHost>" directive.
2. Search for the "SecureProxy" directive within an "<IfModule weblogic_module>" at the virtual host configuration scope.
3. If the directive is omitted or is not set to "On", this is a finding.
V-64587
False
OH12-1X-000335
If using the WebLogic Web Server Proxy Plugin and configuring end-to-end SSL:
1. Open every .conf file (e.g., ssl.conf) included in $DOMAIN_HOME/config/fmwconfig/components/OHS/<componentName>/httpd.conf with an editor that contains an SSL-enabled "<VirtualHost>" directive.
2. Search for the "SecureProxy" directive within an "<IfModule weblogic_module>" at the virtual host configuration scope.
3. If the directive is omitted or is not set to "On", this is a finding.
M
2753