SV-99913r1_rule
V-89263
SRG-APP-000141-WSR-000082
VRAU-LI-000190
CAT II
10
Navigate to and open /opt/vmware/etc/lighttpd/lighttpd.conf file
Navigate to the cgi.assign parameter.
Configure the cgi.assign parameter with the scripts that are deemed necessary and approved (whitelisted).
Obtain supporting documentation from the ISSO.
Determine the scripts that are deemed necessary and approved (whitelist).
Note: Lighttpd provides the cgi.assign parameter to specify script mappings.
Navigate to and open /opt/vmware/etc/lighttpd/lighttpd.conf file
Navigate to the cgi.assign parameter.
If cgi.assign parameter is configured with script types that are deemed for denial, this is a finding.
V-89263
False
VRAU-LI-000190
Obtain supporting documentation from the ISSO.
Determine the scripts that are deemed necessary and approved (whitelist).
Note: Lighttpd provides the cgi.assign parameter to specify script mappings.
Navigate to and open /opt/vmware/etc/lighttpd/lighttpd.conf file
Navigate to the cgi.assign parameter.
If cgi.assign parameter is configured with script types that are deemed for denial, this is a finding.
M
3457