Review Users with 'Administrator' Administrative User Role

Information

Assigning administrative roles to users enables them to administer application servers through the administrative console or through wsadmin scripting.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

Review the Users listed, and remove any users that do not require the Administrator role:
1. Expand User and Groups
2. Click Administrative user roles
3. Select the check box beside the user to be removed
5. Click Remove
6. Click Save

See Also

https://www.ibm.com/developerworks/websphere/zones/was/security/