Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-237938 | IBMZ-VM-000940 | SV-237938r649654_rule | Medium |
Description |
---|
Information stored in one location is vulnerable to accidental or incidental deletion or alteration. Off-loading is a common process in information systems with limited audit storage capacity. |
STIG | Date |
---|---|
IBM zVM Using CA VM:Secure Security Technical Implementation Guide | 2021-06-16 |
Check Text ( C-41148r649652_chk ) |
---|
If there is no documented process for audit offload, this is a finding. Examine the documented user process for audit record offload. If the procedure does not offload to a different system or media, this is a finding. |
Fix Text (F-41107r649653_fix) |
---|
Develop a user written procedure to offload audit records to a different system or media. |