Check: GEN003623
      
      
        
  Solaris 9 X86 STIG:
  GEN003623
  
    (in version v1 r9)
  
      
      
    
  Title
The system must use a separate file system for the system audit data path. (Cat III impact)
Discussion
The use of separate file systems for different paths can protect the system from failures resulting from a file system becoming full or failing.
Check Content
Determine the audit log data path. # grep "^dir:" /etc/security/audit_control Determine if the audit log data path is a separate filesystem. # grep <audit data path> /etc/vfstab If no result is returned, the audit data path is not on a separate filesystem and this is a finding.
Fix Text
Migrate the system audit data path onto a separate file system.
Additional Identifiers
Rule ID: SV-28628r1_rule
Vulnerability ID: V-23738
Group Title:
Expert Comments
      
        
        
      
      
        
  CCIs
      
      
        
        
      
    
  | Number | Definition | 
|---|---|
| CCI-001208 | The organization partitions the information system into components residing in separate physical domains (or environments) as deemed necessary. | 
      
        
        
      
      
        
  Controls
      
      
        
        
      
    
  | Number | Title | 
|---|---|
| No controls are assigned to this check |