3.3 Ensure Admin Console is either secured or removed - 'java:/jaas/jmx-console = true'

Information

The Administration Console application must be secured so it is accessible by trusted administrators only. If this condition is not met, the application must be removed (deleted) from deployment.

Solution

Require authorization for access to the JBoss Administration Console.

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-3, CAT|I

Plugin: Unix

Control ID: 13c71d185ab031d5fde47ede68dced27fc5583d61e1620b4ae5f1a2225142588