STIGQter STIGQter: STIG Summary: HYCU Protege Security Technical Implementation Guide Version: 1 Release: 3 Benchmark Date: 01 Jul 2026:

The HYCU virtual appliance must allocate audit record storage capacity in accordance with organization-defined audit record storage requirements.

DISA Rule

SV-268251r1038695_rule

Vulnerability Number

V-268251

Group Title

SRG-APP-000357-NDM-000293

Rule Version

HYCU-ND-000390

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the operating system to enforce log rotation and restrict log file size to an organization-defined value by editing "/etc/audit/auditd.conf" files using the following command:
sudo vi /etc/audit/auditd.conf

Add or modify the following lines to have the required value for the organization. Refer to the sample below:
max_log_file_action = ROTATION
max_log_file = 6

Check Contents

Log in to the HYCU VM console.

Review the /etc/audit/auditd.conf file and verify that the settings are in accordance with organizational policies.

If it is not configured in accordance with organizational policies, this is a finding.

Check for the value of the "max_log_file_action" option in "/etc/audit/auditd.conf" with the following command:
sudo grep max_log_file_action /etc/audit/auditd.conf

If the "max_log_file_action" value is not set to "ROTATION", this is a finding.

Vulnerability Number

V-268251

Documentable

False

Rule Version

HYCU-ND-000390

Severity Override Guidance

Log in to the HYCU VM console.

Review the /etc/audit/auditd.conf file and verify that the settings are in accordance with organizational policies.

If it is not configured in accordance with organizational policies, this is a finding.

Check for the value of the "max_log_file_action" option in "/etc/audit/auditd.conf" with the following command:
sudo grep max_log_file_action /etc/audit/auditd.conf

If the "max_log_file_action" value is not set to "ROTATION", this is a finding.

Check Content Reference

M

Target Key

5660