STIGQter STIGQter: STIG Summary: HYCU Protege Security Technical Implementation Guide Version: 1 Release: 3 Benchmark Date: 01 Jul 2026:

The HYCU virtual appliance must produce audit records containing information to establish when events occurred, where events occurred, the source of the event, the outcome of the event, and identity of any individual or process associated with the event.

DISA Rule

SV-268245r1038756_rule

Vulnerability Number

V-268245

Group Title

SRG-APP-000096-NDM-000226

Rule Version

HYCU-ND-000290

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Log in to the HYCU VM console and load the STIG audit rules by using the following commands:

1. cp /usr/share/audit/sample-rules/10-base-config.rules /usr/share/audit/sample-rules/30-stig.rules /usr/share/audit/sample-rules/31-privileged.rules /usr/share/audit/sample-rules/99-finalize.rules /etc/audit/rules.d/

2. augenrules --load

Check Contents

Check the contents of the "/var/log/audit/audit.log" file.

HYCU also maintains Event (Audit) information in the "HYCU Web UI Events" menu.

Verify the audit log contains records for:
- When (date and time) events occurred.
- Where events occurred.
- The source of the event(s).
- The outcome of the event(s).
- The identity of any individual or process associated with the event(s).

If the audit log is not configured or does not have required contents, this is a finding.

Vulnerability Number

V-268245

Documentable

False

Rule Version

HYCU-ND-000290

Severity Override Guidance

Check the contents of the "/var/log/audit/audit.log" file.

HYCU also maintains Event (Audit) information in the "HYCU Web UI Events" menu.

Verify the audit log contains records for:
- When (date and time) events occurred.
- Where events occurred.
- The source of the event(s).
- The outcome of the event(s).
- The identity of any individual or process associated with the event(s).

If the audit log is not configured or does not have required contents, this is a finding.

Check Content Reference

M

Target Key

5660