STIGQter STIGQter: STIG Summary: Canonical Ubuntu 24.04 LTS Security Technical Implementation Guide Version: 1 Release: 6 Benchmark Date: 01 Jul 2026:

Ubuntu 24.04 LTS must have the "auditd" package installed.

DISA Rule

SV-270656r1067148_rule

Vulnerability Number

V-270656

Group Title

SRG-OS-000365-GPOS-00152

Rule Version

UBTU-24-100400

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the audit service to produce audit records containing the information needed to establish when (date and time) an event occurred.

Install the audit service (if the audit service is not already installed) with the following command:

$ sudo apt install -y auditd

Check Contents

Verify the audit service is configured to produce audit records with the following command:

$ dpkg -l | grep auditd
ii auditd 1:3.0.7-1build1 amd64 User space tools for security auditing

If the "auditd" package is not installed, this is a finding.

Vulnerability Number

V-270656

Documentable

False

Rule Version

UBTU-24-100400

Severity Override Guidance

Verify the audit service is configured to produce audit records with the following command:

$ dpkg -l | grep auditd
ii auditd 1:3.0.7-1build1 amd64 User space tools for security auditing

If the "auditd" package is not installed, this is a finding.

Check Content Reference

M

Target Key

5673