TCAT-AS-001460 - The application server, when categorized as a high availability system within RMF, must be in a high-availability (HA) cluster.

Information

A MAC I system is a system that handles data vital to the organization's operational readiness or effectiveness of deployed or contingency forces. A MAC I system must maintain the highest level of integrity and availability. By HA clustering the application server, the hosted application and data are given a platform that is load-balanced and provided high-availability.

Solution

From the Tomcat server as a privileged user, modify the $CATALINA_BASE/conf/server.xml file.

Uncomment the '<Cluster/> object and configure the system into a cluster as per the Tomcat clustering documentation provided at the Tomcat website.

https://tomcat.apache.org/tomcat-9.0-doc/config/cluster.html

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Apache_Tomcat_Application_Server_9_V3R1_STIG.zip

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-5, CAT|II, CCI|CCI-002385, Rule-ID|SV-222995r961620_rule, STIG-ID|TCAT-AS-001460, STIG-Legacy|SV-111513, STIG-Legacy|V-102573, Vuln-ID|V-222995

Plugin: Unix

Control ID: ee4329c360929127c54abb15e2209538e04811e6665db2749c29035f1881b847