| Checked | Name | Title |
|---|---|---|
| ☐ | SV-256673r888575_rule | ESX Agent Manager must limit the amount of time that each Transmission Control Protocol (TCP) connection is kept alive. |
| ☐ | SV-256674r888578_rule | ESX Agent Manager must limit the number of concurrent connections permitted. |
| ☐ | SV-256675r888581_rule | ESX Agent Manager must limit the maximum size of a POST request. |
| ☐ | SV-256676r888584_rule | ESX Agent Manager must protect cookies from cross-site scripting (XSS). |
| ☐ | SV-256677r888587_rule | ESX Agent Manager must record user access in a format that enables monitoring of remote access. |
| ☐ | SV-256678r888590_rule | ESX Agent Manager must generate log records for system startup and shutdown. |
| ☐ | SV-256679r888593_rule | ESX Agent Manager log files must only be modifiable by privileged users. |
| ☐ | SV-256680r918904_rule | ESX Agent Manager application files must be verified for their integrity. |
| ☐ | SV-256681r888599_rule | ESX Agent Manager must only run one webapp. |
| ☐ | SV-256682r888602_rule | ESX Agent Manager must not be configured with unsupported realms. |
| ☐ | SV-256683r888605_rule | ESX Agent Manager must be configured to limit access to internal packages. |
| ☐ | SV-256684r888608_rule | ESX Agent Manager must have Multipurpose Internet Mail Extensions (MIMEs) that invoke operating system shell programs disabled. |
| ☐ | SV-256685r888611_rule | ESX Agent Manager must have mappings set for Java servlet pages. |
| ☐ | SV-256686r888614_rule | ESX Agent Manager must not have the Web Distributed Authoring (WebDAV) servlet installed. |
| ☐ | SV-256687r888617_rule | ESX Agent Manager must be configured with memory leak protection. |
| ☐ | SV-256688r888620_rule | ESX Agent Manager must not have any symbolic links in the web content directory tree. |
| ☐ | SV-256689r888623_rule | ESX Agent Manager directory tree must have permissions in an out-of-the-box state. |
| ☐ | SV-256690r888626_rule | ESX Agent Manager must fail to a known safe state if system initialization fails, shutdown fails, or aborts fail. |
| ☐ | SV-256691r888629_rule | ESX Agent Manager must limit the number of allowed connections. |
| ☐ | SV-256692r888632_rule | ESX Agent Manager must set URIEncoding to UTF-8. |
| ☐ | SV-256693r888635_rule | ESX Agent Manager must use the "setCharacterEncodingFilter" filter. |
| ☐ | SV-256694r888638_rule | ESX Agent Manager must set the welcome-file node to a default web page. |
| ☐ | SV-256695r888641_rule | ESX Agent Manager must not show directory listings. |
| ☐ | SV-256696r888644_rule | ESX Agent Manager must be configured to show error pages with minimal information. |
| ☐ | SV-256697r888647_rule | ESX Agent Manager must be configured to not show error reports. |
| ☐ | SV-256698r918905_rule | ESX Agent Manager must hide the server version. |
| ☐ | SV-256699r888653_rule | ESX Agent Manager must not enable support for TRACE requests. |
| ☐ | SV-256700r918907_rule | ESX Agent Manager must have the debug option disabled. |
| ☐ | SV-256701r888659_rule | Rsyslog must be configured to monitor and ship ESX Agent Manager log files. |
| ☐ | SV-256702r888662_rule | ESX Agent Manager must set the secure flag for cookies. |
| ☐ | SV-256703r888665_rule | ESX Agent Manager must be configured with the appropriate ports. |
| ☐ | SV-256704r888668_rule | ESX Agent Manager must disable the shutdown port. |
| ☐ | SV-256705r888671_rule | ESX Agent Manager default servlet must be set to "readonly". |