Revision 1.5

Aug 9, 2022
Functional Update
  • 2.1 Ensure Only Necessary Authentication and Authorization Modules Are Enabled
  • 2.2 Ensure the Log Config Module Is Enabled
  • 2.3 Ensure the WebDAV Modules Are Disabled
  • 2.4 Ensure the Status Module Is Disabled
  • 2.5 Ensure the Autoindex Module Is Disabled
  • 2.6 Ensure the Proxy Modules Are Disabled
  • 2.7 Ensure the User Directories Module Is Disabled
  • 2.8 Ensure the Info Module Is Disabled
  • 2.9 Ensure the Basic and Digest Authentication Modules are Disabled
  • 3.1 Ensure the Apache Web Server Runs As a Non-Root User - Group
  • 3.1 Ensure the Apache Web Server Runs As a Non-Root User - User
  • 3.1 Ensure the Apache Web Server Runs As a Non-Root User - id
  • 3.10 Ensure the ScoreBoard File Is Secured
  • 3.12 Ensure Group Write Access for the Document Root Directories and Files Is Properly Restricted
  • 3.2 Ensure the Apache User Account Has an Invalid Shell
  • 3.3 Ensure the Apache User Account Is Locked
  • 3.8 Ensure the Lock File Is Secured - configured
  • 3.8 Ensure the Lock File Is Secured - permissions
  • 3.9 Ensure the Pid File Is Secured - 'PidFile directory'
  • 5.9 Ensure Old HTTP Protocol Versions Are Disallowed - rewrite_module
  • 6.1 Ensure the Error Log Filename and Severity Level Are Configured Correctly - ErrorLog
  • 6.5 Ensure Applicable Patches Are Applied
  • 7.1 Ensure mod_ssl and/or mod_nss Is Installed
  • 9.5 Ensure the Timeout Limits for Request Headers is Set to 40 or Less - mod_reqtimeout
  • 9.6 Ensure Timeout Limits for the Request Body is Set to 20 or Less - mod_reqtimeout
Miscellaneous
  • Platform check updated.