SV-95935r1_rule
V-81221
SRG-APP-000015-AS-000010
WBSP-AS-000190
CAT II
10
From the administrative console, navigate to Security >> Global Security.
Expand "Web and SIP security".
Select "Set security cookies to HTTPOnly".
Click "OK".
Click "Save".
Restart the DMGR and all the JVMs.
From the administrative console, navigate to Security >> Global Security.
Expand "Web and SIP security".
Click on "Single sign-on (SSO)".
If "Set security cookies to HTTPOnly" is not selected, this is a finding.
V-81221
False
WBSP-AS-000190
From the administrative console, navigate to Security >> Global Security.
Expand "Web and SIP security".
Click on "Single sign-on (SSO)".
If "Set security cookies to HTTPOnly" is not selected, this is a finding.
M
3399