2.10 - Administrator Group should be set up

Information

Assign only users who are going to administer the Oracle WebLogic Server to the Administrator Group.

If a user is given privileges they should not have, it is possible that the Administration Server could be misconfigured and left open to attacks by malicious users.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

To setup the administrator groups:
1. Select the name of the active Security Realm.
2. Select Users and Groups > Users.
3. Select the user to add to the group.
4. On the Settings for User Name page, select Groups.
5. Select the Administrators group.
6. Click the right arrow to move the group to the user.
7. Click Save.