Check: GEN003650
SUSE Linux Enterprise Server v11 for System z STIG:
GEN003650
(in versions v1 r12 through v1 r9)
Title
All local file systems must employ journaling or another mechanism ensuring file system consistency. (Cat III impact)
Discussion
File system journaling, or logging, can allow reconstruction of file system data after a system crash preserving the integrity of data that may have otherwise been lost. Journaling file systems typically do not require consistency checks upon booting after a crash, which can improve system availability. Some file systems employ other mechanisms to ensure consistency also satisfying this requirement.
Check Content
Verify local filesystems use journaling. # mount | grep '^/dev/' | egrep -v 'type (ext3|ext4|jfs|reiserfs|xfs|iso9660|udf)' If a mount is listed, this is a finding.
Fix Text
Convert local file systems to use journaling or another mechanism ensuring file system consistency.
Additional Identifiers
Rule ID: SV-45754r1_rule
Vulnerability ID: V-22422
Group Title: GEN003650
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000553 |
The information system implements transaction recovery for systems that are transaction-based. |
Controls
Number | Title |
---|---|
CP-10 (2) |
Transaction Recovery |