Check: GEN003623
Solaris 9 X86 STIG:
GEN003623
(in version v1 r9)
Title
The system must use a separate file system for the system audit data path. (Cat III impact)
Discussion
The use of separate file systems for different paths can protect the system from failures resulting from a file system becoming full or failing.
Check Content
Determine the audit log data path. # grep "^dir:" /etc/security/audit_control Determine if the audit log data path is a separate filesystem. # grep <audit data path> /etc/vfstab If no result is returned, the audit data path is not on a separate filesystem and this is a finding.
Fix Text
Migrate the system audit data path onto a separate file system.
Additional Identifiers
Rule ID: SV-28628r1_rule
Vulnerability ID: V-23738
Group Title:
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001208 |
The organization partitions the information system into components residing in separate physical domains (or environments) as deemed necessary. |
Controls
Number | Title |
---|---|
No controls are assigned to this check |