Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-60009 | SP13-00-000190 | SV-74439r1_rule | Medium |
Description |
---|
During the installation of Microsoft SharePoint, the Central Administration Web site is established on a randomly-assigned TCP port by default. Allowing a randomly-assigned default may result in use of a port which violates DoD policy or conflicts with ports already in use. Use of certain well-known ports may also result in slow operational response or expose the application to known denial of service attacks. |
STIG | Date |
---|---|
SharePoint 2013 Security Technical Implementation Guide | 2015-05-07 |
Check Text ( C-60699r1_chk ) |
---|
Review the SharePoint server Central Administration configuration to ensure the port number selected complies with DoD Ports and Protocol Management (PPSM) program requirements. Open the SharePoint Management Shell (Start >> All Programs >> Microsoft SharePoint Products >> SharePoint Management Shell). Type the following command at the PowerShell prompt: Set -SPCentralAdministration -Port Verify the port number is allowed by the DoD PPSM policy. If the port number is not allowed in accordance with DoD PPSM policy, this is a finding. |
Fix Text (F-65419r1_fix) |
---|
Configure the SharePoint Central Administration port number selected to comply with DoD Ports and Protocol Management (PPSM) program requirements. Open the SharePoint Management Shell (Start >> All Programs >> Microsoft SharePoint Products >> SharePoint Management Shell). Change the port number to a PPS-approved port which does not conflict with existing port usage using the following command: Set -SPCentralAdministration -Port Press "Enter" to save. |