Check: 2.007
Windows 2003 DC STIG:
2.007
(in version v6 r40)
Title
File-auditing configuration does not meet minimum requirements. (Cat II impact)
Discussion
Improper modification of the core system files can render a system inoperable. Further, modifications to these system files can have a significant impact on the security configuration of the system. Auditing of significant modifications made to the system files provides a method of determining the responsible party.
Check Content
Fix Text
Configure auditing on each partition/drive to audit all "Failures" for the "Everyone" group.
Additional Identifiers
Rule ID: SV-29472r1_rule
Vulnerability ID: V-1080
Group Title:
Expert Comments
Expert comments are only available to logged-in users.
CCIs
CCIs tied to check.
Number | Definition |
---|---|
CCI-000172 |
Generate audit records for the event types defined in AU-2 c that include the audit record content defined in AU-3. |
CCI-001814 |
The Information system supports auditing of the enforcement actions. |