STIGQter STIGQter: STIG Summary: Solaris 10 X86 Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 22 Jan 2021:

The /etc/security/audit_user file must not define a different auditing level for specific users.

DISA Rule

SV-227533r603266_rule

Vulnerability Number

V-227533

Group Title

SRG-OS-000470

Rule Version

GEN000000-SOL00040

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Edit the audit_user file and remove specific user configurations differing from the global audit settings.

Check Contents

Perform:

# more /etc/security/audit_user

If /etc/security/audit_user has entries other than root, ensure the users defined are audited with the same flags as all users as defined in /etc/security/audit_control file.

Vulnerability Number

V-227533

Documentable

False

Rule Version

GEN000000-SOL00040

Severity Override Guidance

Perform:

# more /etc/security/audit_user

If /etc/security/audit_user has entries other than root, ensure the users defined are audited with the same flags as all users as defined in /etc/security/audit_control file.

Check Content Reference

M

Target Key

4061

Comments