UCF STIG Viewer Logo

The system must use a separate file system for the system audit data path.


Overview

Finding ID Version Rule ID IA Controls Severity
V-23738 GEN003623 SV-28628r2_rule Low
Description
The use of separate file systems for different paths can protect the system from failures resulting from a file system becoming full or failing.
STIG Date
SOLARIS 10 X86 SECURITY TECHNICAL IMPLEMENTATION GUIDE 2016-06-22

Details

Check Text ( C-28877r2_chk )
Determine the audit log data path.
# grep "^dir:" /etc/security/audit_control

Determine if the audit log data path is a separate filesystem.
# df -h

If the returned mount point is "/" this is a finding.
Fix Text (F-25904r1_fix)
Migrate the system audit data path onto a separate file system.