Check: GEN003650
AIX 6.1 SECURITY TECHNICAL IMPLEMENTATION GUIDE:
GEN003650
(in versions v1 r14 through v1 r10)
Title
All local file systems must employ journaling or another mechanism ensuring file system consistency. (Cat III impact)
Discussion
File system journaling, or logging, can allow reconstruction of file system data after a system crash, thus preserving the integrity of data that may have otherwise been lost. Journaling file systems typically do not require consistency checks upon booting after a crash, which can improve system availability. Some file systems employ other mechanisms to ensure consistency which also satisfy this requirement.
Check Content
Determine if the local file systems employ journaling or another mechanism ensuring file system consistency. Procedure: List all local file system mount points. #/usr/sysv/bin/df -l | grep -v “/proc” #lsfs < each file system returned> If any file systems are not jfs or jfs2, this is a finding.
Fix Text
Convert local file systems to use journaling or another mechanism ensuring file system consistency.
Additional Identifiers
Rule ID: SV-39105r2_rule
Vulnerability ID: V-22422
Group Title: GEN003650
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000553 |
The information system implements transaction recovery for systems that are transaction-based. |
Controls
Number | Title |
---|---|
CP-10 (2) |
Transaction Recovery |