Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-33205 | SRG-OS-000213-NA | SV-43606r1_rule | Medium |
Description |
---|
It is critical when an operating system is at risk of failing to process audit logs as required it takes action to mitigate the failure. If the system were to continue processing without auditing enabled, actions can be taken on the system that cannot be tracked and recorded for later forensic analysis. Rationale for non-applicability: This CCI is not appropriate for a mobile device. Automatic disabling of devices poses a safety risk to mobile users who may have no other means of communication. |
STIG | Date |
---|---|
Mobile Operating System Security Requirements Guide | 2013-07-03 |
Check Text ( C-41469r1_chk ) |
---|
This requirement is NA for the Mobile OS SRG. |
Fix Text (F-37109r1_fix) |
---|
The requirement is NA. No fix is required. |