VCST-80-000155 The vCenter STS service host-manager webapp must be removed.

Information

Tomcat provides host management functionality through either a default host-manager webapp or through local editing of the configuration files. The host-manager webapp files must be deleted, and administration must be performed through the local editing of the configuration files.

Solution

At the command prompt, run the following command:

# rm -rf /var/opt/apache-tomcat/webapps/host-manager

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_VMW_vSphere_8-0_Y24M08_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7a., CAT|II, CCI|CCI-000381, Rule-ID|SV-259002r1003674_rule, STIG-ID|VCST-80-000155, Vuln-ID|V-259002

Plugin: Unix

Control ID: f3d8dd2c27f724e3efa13281f926678c92304edf45f52b831c0d2848ce0b467f