Rule ID
SV-256620r888351_rule
Version
V1R1
CCIs
Performance Charts performs user authentication at the application level and not through Tomcat. Depending on the vCenter Server Appliance (VCSA) version, Performance Charts may come configured with a "UserDatabaseRealm". This should be removed as part of eliminating unnecessary features.
At the command prompt, run the following command: # grep UserDatabaseRealm /usr/lib/vmware-perfcharts/tc-instance/conf/server.xml If the command produces any output, this is a finding.
Navigate to and open: /usr/lib/vmware-perfcharts/tc-instance/conf/server.xml Remove the <Realm> node returned in the check. Restart the service with the following command: # vmon-cli --restart perfcharts