STIGQter STIGQter: STIG Summary: HYCU Protege Security Technical Implementation Guide Version: 1 Release: 3 Benchmark Date: 01 Jul 2026:

The HYCU virtual appliance must generate log records for a locally developed list of auditable events.

DISA Rule

SV-268244r1211034_rule

Vulnerability Number

V-268244

Group Title

SRG-APP-000516-NDM-000334

Rule Version

HYCU-ND-000280

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the operating system to use a locally developed list of auditable events by editing "/etc/audit/auditd.conf" files using the following command:
sudo vi /etc/audit/auditd.conf

Add or modify lines to have the required values for the organization.

Check Contents

Log in to the HYCU VM console.

Review the "/etc/audit/auditd.conf" file and verify the settings are in accordance with a locally developed list of auditable events.

If it is not configured in accordance with organizational policies, this is a finding.

Check for the value of the "max_log_file_action" option in "/etc/audit/auditd.conf" with the following command:
sudo grep max_log_file_action /etc/audit/auditd.conf

If the "max_log_file_action" value is not set to "ROTATE", this is a finding.

Vulnerability Number

V-268244

Documentable

False

Rule Version

HYCU-ND-000280

Severity Override Guidance

Log in to the HYCU VM console.

Review the "/etc/audit/auditd.conf" file and verify the settings are in accordance with a locally developed list of auditable events.

If it is not configured in accordance with organizational policies, this is a finding.

Check for the value of the "max_log_file_action" option in "/etc/audit/auditd.conf" with the following command:
sudo grep max_log_file_action /etc/audit/auditd.conf

If the "max_log_file_action" value is not set to "ROTATE", this is a finding.

Check Content Reference

M

Target Key

5660