Check: GEN002760
VMware ESX 3 Server:
GEN002760
(in version v1 r2)
Title
The audit system must be configured to audit all administrative, privileged, and security actions. (Cat II impact)
Discussion
If the system is not configured to audit certain activities and write them to an audit log, it is more difficult to detect and track system compromises and damages incurred during a system compromise.
Check Content
Check the system configuration to determine if all administrative, privileged, and security actions are audited. If any of these categories of events is not audited, this is a finding.
Fix Text
Configure the system to audit all administrative, privileged, and security actions.
Additional Identifiers
Rule ID: SV-816r2_rule
Vulnerability ID: V-816
Group Title: GEN002760
Expert Comments
Expert comments are only available to logged-in users.
CCIs
CCIs tied to check.
Number | Definition |
---|---|
CCI-000347 |
The organization employs automated mechanisms to support auditing of the enforcement actions. |
Controls
Controls tied to check. These are derived from the CCIs shown above.
Number | Title |
---|---|
No controls are assigned to this check |