1.2 Ensure extraneous files and directories are removed

Information

The installation might provide example applications, documentation, and other directories which may not serve a production use.

Removing non-production resources is a defense in depth measure that reduces potential exposures introduced by these resources.

Solution

Remove extraneous resources for each:

Extension:

$ rm -rf ${wlp.user.dir}/extension/<non-production extension>

Shared resource(s):

$ rm -rf ${wlp.user.dir}/shared/<non-production shared resource(s)>

Server:

$ rm -rf ${wlp.user.dir}/server/<non-production server>

Client:

$ rm -rf ${wlp.user.dir}/client/<non-production client>

See Also

https://workbench.cisecurity.org/benchmarks/7724

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7, CSCv7|18.9

Plugin: Unix

Control ID: 0390640d24d8770c2daf69e2deb4946ddac4b8539491cfdb7ff13a8c17af3e71