STIGQter STIGQter: STIG Summary: SLES 12 Security Technical Implementation Guide Version: 1 Release: 4 Benchmark Date: 24 Jan 2020: The SUSE operating system audit event multiplexor must be configured to use Kerberos.

DISA Rule

SV-91999r2_rule

Vulnerability Number

V-77303

Group Title

SRG-OS-000342-GPOS-00133

Rule Version

SLES-12-020080

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Configure the SUSE operating system audit event multiplexor to use Kerberos by editing the "/etc/audisp/audisp-remote.conf" file.

Edit or add the following line to match the text below:

enable_krb5 = yes

Check Contents

Determine if the SUSE operating system audit event multiplexor is configured to use Kerberos by running the following command:

# sudo cat /etc/audisp/audisp-remote.conf | grep enable_krb5
enable_krb5 = yes

If "enable-krb5" is not set to "yes", this is a finding.

Vulnerability Number

V-77303

Documentable

False

Rule Version

SLES-12-020080

Severity Override Guidance

Determine if the SUSE operating system audit event multiplexor is configured to use Kerberos by running the following command:

# sudo cat /etc/audisp/audisp-remote.conf | grep enable_krb5
enable_krb5 = yes

If "enable-krb5" is not set to "yes", this is a finding.

Check Content Reference

M

Target Key

2903

Comments