STIGQter STIGQter: STIG Summary: Solaris 10 X86 Security Technical Implementation Guide Version: 1 Release: 26 Benchmark Date: 24 Jan 2020: The system must use a separate file system for the system audit data path.

DISA Rule

SV-28628r2_rule

Vulnerability Number

V-23738

Group Title

GEN003623

Rule Version

GEN003623

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Migrate the system audit data path onto a separate file system.

Check Contents

Determine the audit log data path.
# grep "^dir:" /etc/security/audit_control

Determine if the audit log data path is a separate filesystem.
# df -h <audit data path>

If the returned mount point is "/" this is a finding.

Vulnerability Number

V-23738

Documentable

False

Rule Version

GEN003623

Severity Override Guidance

Determine the audit log data path.
# grep "^dir:" /etc/security/audit_control

Determine if the audit log data path is a separate filesystem.
# df -h <audit data path>

If the returned mount point is "/" this is a finding.

Check Content Reference

M

Responsibility

System Administrator

Target Key

25

Comments