VCUI-70-000030 - vSphere UI must be configured with the appropriate ports.

Information

Web servers provide numerous processes, features, and functionalities that use TCP/IP ports. Some of these processes may be deemed unnecessary or too unsecure to run on a production system. The ports that vSphere UI listens on are configured in the 'catalina.properties' file and must be verified as accurate to their shipping state.

Solution

Navigate to and open:

/usr/lib/vmware-vsphere-ui/server/conf/catalina.properties

Navigate to the ports specification section.

Set the vSphere UI port specifications according to the shipping configuration as follows:

http.port=5090
proxy.port=443

Restart the service with the following command:

# vmon-cli --restart vsphere-ui

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_VMW_vSphere_7-0_Y23M07_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(1)(b), CAT|II, CCI|CCI-001762, Rule-ID|SV-256807r889420_rule, STIG-ID|VCUI-70-000030, Vuln-ID|V-256807

Plugin: Unix

Control ID: c8deac15070427b2cc596c95248210bf21a06959b4a662bdac42ea43736a649f