SV-79129r1_rule
V-64639
SRG-APP-000516-WSR-000174
OH12-1X-000200
CAT II
10
1. Open $DOMAIN_HOME/config/fmwconfig/components/OHS/<componentName>/httpd.conf and every .conf file (e.g., ssl.conf) included in it with an editor.
2. Search for the "<LimitExcept>" directive at the directory configuration scope.
3. Set the "<LimitExcept>" directive to "GET POST", add the directive if it does not exist.
4. Within the "<LimitExcept GET POST>" directives, add the directive "Deny" and set it to "from all".
1. Open $DOMAIN_HOME/config/fmwconfig/components/OHS/<componentName>/httpd.conf and every .conf file (e.g., ssl.conf) included in it with an editor.
2. Search for the "<LimitExcept>" directive at the directory configuration scope.
3. If the "<LimitExcept>" directive is omitted (with the exception of the "<Directory />" directive) or is set improperly, this is a finding.
V-64639
False
OH12-1X-000200
1. Open $DOMAIN_HOME/config/fmwconfig/components/OHS/<componentName>/httpd.conf and every .conf file (e.g., ssl.conf) included in it with an editor.
2. Search for the "<LimitExcept>" directive at the directory configuration scope.
3. If the "<LimitExcept>" directive is omitted (with the exception of the "<Directory />" directive) or is set improperly, this is a finding.
M
2753