VCUI-67-000028 - vSphere UI must be configured with the appropriate ports - proxy

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Web servers provide numerous processes, features, and functionalities that use TCP/IP ports. Some of these processes may be deemed unnecessary or too unsecure to run on a production system. The ports that vSphere UI listens on are configured in the 'catalina.properties' file and must be verified as accurate to their shipping state.

Solution

Navigate to and open /usr/lib/vmware-vsphere-ui/server/conf/catalina.properties.

Navigate to the ports specification section.

Set the vSphere UI port specifications according to the shipping configuration below:

http.port=5090
proxy.port=443
https.port=5443

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_VMW_vSphere_6-7_STIG.zip

Item Details

References: CAT|II, CCI|CCI-001762, Rule-ID|SV-239709r679233_rule, STIG-ID|VCUI-67-000028, Vuln-ID|V-239709

Plugin: Unix

Control ID: 049dc519d3a0e44fbeb119abe539d102658592d8c93b28f383059e9226c00d96