VCUI-67-000028 - vSphere UI must be configured with the appropriate ports - proxy

Information

Web servers provide numerous processes, features, and functionalities that use TCP/IP ports. Some of these processes may be deemed unnecessary or too unsecure to run on a production system. The ports that vSphere UI listens on are configured in the 'catalina.properties' file and must be verified as accurate to their shipping state.

Solution

Navigate to and open /usr/lib/vmware-vsphere-ui/server/conf/catalina.properties.

Navigate to the ports specification section.

Set the vSphere UI port specifications according to the shipping configuration below:

http.port=5090
proxy.port=443
https.port=5443

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_VMW_vSphere_6-7_Y23M07_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(1)(b), CAT|II, CCI|CCI-001762, Rule-ID|SV-239709r879756_rule, STIG-ID|VCUI-67-000028, Vuln-ID|V-239709

Plugin: Unix

Control ID: 964b6dffd9afd783f28e5f8655f99a1112b7f55acdb728d503bd4009876d64e8