AIQUM服务器在Queres Web扫描程序期间无响应
适用场景
- ActiveIQ Unified Manager (AIQUM) 9.6及更高版本的所有平台
- 外部Web扫描程序
问题描述
- 在Qu服务站 扫描AIQUM服务器的特定时间内、AIQUM会变得无响应、并显示CPU利用率较高。
注意:这不限于Qu方面。任何从外部扫描AIQUM的操作都可以发生原因this问题描述。导致此问题描述的其他已知产品包括:- 克劳德斯特里克
- Managessoft
- Tianium
- Active IQ Unified Manager计划报告不显示当前数据
- 已根据 建议添加资源、 但此资源没有帮助
audit.log
或access_log.log
[qualysIP] [aiqumIP] [-] [-] [05/Dec/2023:18:01:54 -0700] [GET / HTTP/1.1] [302] [-] [QualysGuard] [-] [-] [0] [1]
[qualysIP] [aiqumIP] [-] [-] [05/Dec/2023:18:03:26 -0700] [GET http://Qualys.null/ HTTP/1.0] [302] [-] [-] [-] [-] [0] [1]
[qualysIP] [aiqumIP] [-] [-] [05/Dec/2023:18:03:28 -0700] [GET /api/?type=keygen&user=qualys2017_7a11b80a&password=qualys_335e HTTP/1.1] [401] [-] [-] [*/*] [text/html;charset=utf-8] [188] [2]
server.log
:
ERROR [io.undertow.request] (default task-2165) UT005023: Exception handling request to /: org.springframework.security.web.firewall.RequestRejectedException: The request was rejected because the HTTP method "QUALYS" was not included within the list of allowed HTTP methods [HEAD, DELETE, POST, GET, OPTIONS, PATCH, PUT]
2023-08-10 22:50:44,708 ERROR [io.undertow.request] (default task-3108) UT005023: Exception handling request to /: org.springframework.security.web.firewall.RequestRejectedException: The request was rejected because the HTTP method "BADMTHD" was not included within the list of allowed HTTP methods [HEAD, DELETE, POST, GET, OPTIONS, PATCH, PUT]
2023-09-05 00:20:39,465 ERROR [io.undertow.request] (default task-171) UT005023: Exception handling request to /: org.springframework.security.web.firewall.RequestRejectedException: The request was rejected because the HTTP method "PROPFIND" was not included within the list of allowed HTTP methods [HEAD, DELETE, POST, GET, OPTIONS, PATCH, PUT]
2023-10-05 08:13:26,683 ERROR [io.undertow.request] (default task-4431) UT005023: Exception handling request to /: org.springframework.security.web.firewall.RequestRejectedException: The request was rejected because the HTTP method "TRACK" was not included within the list of allowed HTTP methods [HEAD, DELETE, POST, GET, OPTIONS, PATCH, PUT] at deployment.dfm-app.war//org.springframework.security.web.firewall.StrictHttpFirewall.rejectForbiddenHttpMethod(StrictHttpFirewall.java:527) [spring-security-web-5.8.1.jar:5.8.1] at deployment.dfm-app.war//org.springframework.security.web.firewall.StrictHttpFirewall.getFirewalledRequest(StrictHttpFirewall.java:504) [spring-security-web-5.8.1.jar:5.8.1]
有关日志位置、请参阅知识库 什么是Active IQ Unified Manager的重要日志文件及其各自位置?