STIGQter STIGQter: STIG Summary: IBM WebSphere Liberty Server Security Technical Implementation Guide Version: 2 Release: 4 Benchmark Date: 01 Apr 2026:

The WebSphere Liberty Server must protect log tools from unauthorized access.

DISA Rule

SV-250329r960939_rule

Vulnerability Number

V-250329

Group Title

SRG-APP-000121-AS-000081

Rule Version

IBMW-LS-000280

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

As a user with local file access to the /opt/IBM/WebSphere/Liberty/bin/ folder, use the chmod command to configure the correct file permissions of 755 for the following files.

binaryLog
auditUtility

Check Contents

As a user with local file access to the /opt/IBM/WebSphere/Liberty/bin folder, verify the following audit tool files have the correct file permissions of 755.

binaryLog
auditUtility

If the file permissions for these files are not set to 755, this is a finding.

Vulnerability Number

V-250329

Documentable

False

Rule Version

IBMW-LS-000280

Severity Override Guidance

As a user with local file access to the /opt/IBM/WebSphere/Liberty/bin folder, verify the following audit tool files have the correct file permissions of 755.

binaryLog
auditUtility

If the file permissions for these files are not set to 755, this is a finding.

Check Content Reference

M

Target Key

5424