SV-99915r1_rule
V-89265
SRG-APP-000141-WSR-000083
VRAU-LI-000195
CAT II
10
Navigate to and open /opt/vmware/etc/lighttpd/lighttpd.conf file
Navigate to the url.access-deny parameter.
Configure the url.access-deny parameter with the file types that are blacklisted.
Obtain supporting documentation from the ISSO.
Determine the file types (blacklist) that are deemed for denial.
Note: Lighttpd provides the url.access-deny parameter to specify the blacklist of files.
Navigate to and open /opt/vmware/etc/lighttpd/lighttpd.conf file
Navigate to the url.access-deny parameter.
If url.access-deny parameter is not configured with the file types that are blacklisted, this is a finding.
If url.access-deny parameter is not set properly, this is a finding.
V-89265
False
VRAU-LI-000195
Obtain supporting documentation from the ISSO.
Determine the file types (blacklist) that are deemed for denial.
Note: Lighttpd provides the url.access-deny parameter to specify the blacklist of files.
Navigate to and open /opt/vmware/etc/lighttpd/lighttpd.conf file
Navigate to the url.access-deny parameter.
If url.access-deny parameter is not configured with the file types that are blacklisted, this is a finding.
If url.access-deny parameter is not set properly, this is a finding.
M
3457