UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

Cron logging must be implemented.


Overview

Finding ID Version Rule ID IA Controls Severity
V-982 GEN003160 SV-27349r1_rule ECAR-1 ECAR-2 ECAR-3 Medium
Description
Cron logging can be used to trace the successful or unsuccessful execution of cron jobs. It can also be used to spot intrusions into the use of the cron facility by unauthorized and malicious users.
STIG Date
Solaris 10 X86 Security Technical Implementation Guide 2014-04-04

Details

Check Text ( C-28489r1_chk )
# ls -lL /var/cron/log
If this file does not exist, or is older than the last cron job, this is a finding.
# more /etc/default/cron
If a CRONLOG=YES line does not exist, this is a finding.
Fix Text (F-24594r1_fix)
Edit /etc/default/cron and set CRONLOG=YES.