Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-12028 | GEN006560 | SV-41530r1_rule | ECAT-1 ECAT-2 | Medium |
Description |
---|
Timely notifications of potential security compromises minimize the potential damage. Minimally, the system must log these events and the SA and the IAO will receive the notifications during the daily system log review. If feasible, active alerting (such as email or paging) should be employed consistent with the site’s established operations management systems and procedures. |
STIG | Date |
---|---|
SOLARIS 10 X86 SECURITY TECHNICAL IMPLEMENTATION GUIDE | 2017-06-21 |
Check Text ( C-7992r2_chk ) |
---|
For each security tool on the system, determine if the tool is configured to notify the IAO and SA of any detected security problem. If such notifications are not configured, this is a finding. |
Fix Text (F-11286r2_fix) |
---|
Configure the security tools on the system to notify the IAO and SA when any security issues are detected. |