UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

The system must use a separate file system for the system audit data path.


Overview

Finding ID Version Rule ID IA Controls Severity
V-23738 GEN003623 SV-28628r2_rule Low
Description
The use of separate file systems for different paths can protect the system from failures resulting from a file system becoming full or failing.
STIG Date
Solaris 10 SPARC Security Technical Implementation Guide 2020-02-26

Details

Check Text ( C-28877r2_chk )
Determine the audit log data path.
# grep "^dir:" /etc/security/audit_control

Determine if the audit log data path is a separate filesystem.
# df -h

If the returned mount point is "/" this is a finding.
Fix Text (F-25904r1_fix)
Migrate the system audit data path onto a separate file system.