STIGQter STIGQter: STIG Summary: vRealize - Cassandra Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 05 Jun 2017:

The Cassandra software, including configuration files, must be stored in dedicated directories, or direct-access storage device (DASD) pools, separate from the host OS and other applications.

DISA Rule

SV-87279r1_rule

Vulnerability Number

V-72647

Group Title

SRG-APP-000133-DB-000199

Rule Version

VROM-CS-000100

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Cassandra Server software, including configuration files, to be stored in dedicated directories, or direct-access storage device (DASD) pools, separate from the host OS and other applications.

Install all applications on directories separate from the DBMS software library directory. Relocate any directories or reinstall other application software that currently shares the DBMS software library directory.

Check Contents

Review the Cassandra Server Configuration to ensure its software, including configuration files, is stored in dedicated directories, or direct-access storage device (DASD) pools, separate from the host OS and other applications.

Run following commands from Cassandra host server console: "cd $VCOPS_BASE/Cassandra/<installed Cassandra release name (current example - apache-cassandra-2.1.8)> ls -l"

If the Cassandra software, including configuration files, is not stored separate from the host OS and other applications, this is a finding.

Vulnerability Number

V-72647

Documentable

False

Rule Version

VROM-CS-000100

Severity Override Guidance

Review the Cassandra Server Configuration to ensure its software, including configuration files, is stored in dedicated directories, or direct-access storage device (DASD) pools, separate from the host OS and other applications.

Run following commands from Cassandra host server console: "cd $VCOPS_BASE/Cassandra/<installed Cassandra release name (current example - apache-cassandra-2.1.8)> ls -l"

If the Cassandra software, including configuration files, is not stored separate from the host OS and other applications, this is a finding.

Check Content Reference

M

Target Key

3179

Comments