STIGQter STIGQter: STIG Summary: Solaris 10 X86 Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 22 Jan 2021:

The audit system must be configured to audit failed attempts to access files and programs.

DISA Rule

SV-227725r603266_rule

Vulnerability Number

V-227725

Group Title

SRG-OS-000064

Rule Version

GEN002720

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Edit /etc/security/audit_control and add the fr or -fr flags to the flags list.
Load the new audit configuration.
# auditconfig -conf

Check Contents

Check the system audit configuration to determine if failed attempts to access files and programs are audited.
# more /etc/security/audit_control
If flags -fr or fr are not configured, this is a finding.

Vulnerability Number

V-227725

Documentable

False

Rule Version

GEN002720

Severity Override Guidance

Check the system audit configuration to determine if failed attempts to access files and programs are audited.
# more /etc/security/audit_control
If flags -fr or fr are not configured, this is a finding.

Check Content Reference

M

Target Key

4061

Comments