The application server must be capable of reverting to the last known good configuration in the event of failed installations and upgrades.

From Application Server Security Requirements Guide

Part of SRG-APP-000133-AS-000093

Associated with: CCI-001499

SV-71773r2_rule The application server must be capable of reverting to the last known good configuration in the event of failed installations and upgrades.

Vulnerability discussion

Any changes to the components of the application server can have significant effects on the overall security of the system.In order to ensure a prompt response to failed application installations and application server upgrades, the application server must provide an automated rollback capability that allows the system to be restored to a previous known good configuration state prior to the application installation or application server upgrade.

Check content

Check the application server documentation and configuration to determine if the application server provides an automated rollback capability to a known good configuration in the event of a failed installation and upgrade. If the application server is not configured to meet this requirement, this is a finding.

Fix text

Configure the application server to automatically rollback to a known good configuration in the event of failed application installations and application server upgrades.

Pro Tips

Lavender hyperlinks in small type off to the right (of CSS class id, if you view the page source) point to globally unique URIs for each document and item. Copy the link location and paste anywhere you need to talk unambiguously about these things.

You can obtain data about documents and items in other formats. Simply provide an HTTP header Accept: text/turtle or Accept: application/rdf+xml.

Powered by sagemincer