The vCenter ESX Agent Manager service manager webapp must be removed.

Overview

Finding IDVersionRule IDIA ControlsSeverity
V-259035VCEM-80-000154SV-259035r960963_ruleCCI-000381medium
Description
Tomcat provides management functionality through either a default manager webapp or through local editing of the configuration files. The manager webapp files must be deleted, and administration must be performed through the local editing of the configuration files.
STIGDate
VMware vSphere 8.0 vCenter Appliance ESX Agent Manager (EAM) Security Technical Implementation Guide2024-12-16

Details

Check Text (C-259035r960963_chk)

At the command prompt, run the following command: # ls -l /var/opt/apache-tomcat/webapps/manager If the manager folder exists or contains any content, this is a finding.

Fix Text (F-62684r934762_fix)

At the command prompt, run the following command: # rm -rf /var/opt/apache-tomcat/webapps/manager