{"description": "Configure a login banner for each website when authentication is required for\nuser access.", "rationale": "A consent banner will be in place to make prospective entrants aware that the\nwebsite they are about to enter is a DoD web site and their activity is subject\nto monitoring. The document, DoDI 8500.01, establishes the policy on the use of\nDoD information systems. It requires the use of a standard Notice and Consent\nBanner and standard text to be included in user agreements. The requirement for\nthe banner is for websites with security and access controls. These are\nrestricted and not publicly accessible. If the website does not require\nauthentication/authorization for use, then the banner does not need to be\npresent. A manual check of the document root directory for a banner page file\n(such as banner.html) or navigation to the website via a browser can be used to\nconfirm the information provided from interviewing the web staff.", "severity": "low", "references": {}, "control_references": {}, "components": [], "identifiers": {}, "ocil_clause": "it is not display the required banner", "ocil": "The document, DoDI 8500.01, establishes the policy on the use of DoD\ninformation systems. It requires the use of a standard Notice and Consent Banner\nand standard text to be included in user agreements. The banner should be set\nto the following:", "oval_external_content": null, "fixtext": "", "checktext": "", "vuldiscussion": "", "srg_requirement": "", "warnings": [], "conflicts": [], "requires": [], "policy_specific_content": {}, "platform": null, "platforms": [], "sce_metadata": {}, "inherited_platforms": [], "cpe_platform_names": [], "inherited_cpe_platform_names": [], "bash_conditional": null, "fixes": {}, "title": "Configure A Banner Page For Each Website", "definition_location": "/aptdata/openscap/scap-security-guide/linux_os/guide/services/http/securing_httpd/httpd_secure_content/httpd_configure_banner_page/rule.yml", "template": null}