CIS Apache HTTP Server 2.4 L1 v2.1.0

Audit Details

Name: CIS Apache HTTP Server 2.4 L1 v2.1.0

Updated: 8/28/2024

Authority: CIS

Plugin: Unix

Revision: 1.2

Estimated Item Count: 91

File Details

Filename: CIS_Apache_HTTP_Server_2.4_Benchmark_v2.1.0_Level_1.audit

Size: 323 kB

MD5: 29ea24002b88d1478207892cd0ff555f
SHA256: ee9aaa153bc59231c276d3b2b5b7fe4b4760ec7333af9c59cace0d7d11790e3d

Audit Changelog

 
Revision 1.2

Aug 28, 2024

Informational Update
  • 4.2 Ensure Appropriate Access to Web Content Is Allowed
  • 5.10 Ensure Access to .ht* Files Is Restricted
  • 5.11 Ensure Access to .git Files Is Restricted
  • 5.12 Ensure Access to .svn Files Is Restricted
  • 5.2 Ensure Options for the Web Root Directory Are Restricted
  • 5.4 Ensure Default HTML Content Is Removed - 'Server Information handler does not exist'
  • 5.4 Ensure Default HTML Content Is Removed - 'Server Status handler does not exist'
  • 5.4 Ensure Default HTML Content Is Removed - 'httpd-manual is not installed'
  • 5.4 Ensure Default HTML Content Is Removed - 'other handler does not exist'
  • 5.7 Ensure HTTP Request Methods Are Restricted
  • 6.1 Ensure the Error Log Filename and Severity Level Are Configured Correctly - 'ErrorLog 'logs/error_log'
  • 6.1 Ensure the Error Log Filename and Severity Level Are Configured Correctly - 'httpd.conf <VirtualHost> ErrorLog is configured'
  • 6.1 Ensure the Error Log Filename and Severity Level Are Configured Correctly - 'httpd.conf LogLevel = notice info or debug'
  • 6.3 Ensure the Server Access Log Is Configured Correctly - 'httpd.conf CustomLog is configured'
  • 6.3 Ensure the Server Access Log Is Configured Correctly - 'httpd.conf LogFormat is configured'
  • 6.4 Ensure Log Storage and Rotation Is Configured Correctly - '/etc/logrotate.conf rotate > 52'
  • 6.4 Ensure Log Storage and Rotation Is Configured Correctly - '/etc/logrotate.conf rotate log files = weekly'
  • 7.2 Ensure a Valid Trusted Certificate Is Installed
Miscellaneous
  • References updated.
Revision 1.1

Jun 17, 2024

Miscellaneous
  • Metadata updated.