UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

The system must use a separate file system for the system audit data path.


Overview

Finding ID Version Rule ID IA Controls Severity
V-227806 GEN003623 SV-227806r505926_rule Low
Description
The use of separate file systems for different paths can protect the system from failures resulting from a file system becoming full or failing.
STIG Date
Solaris 10 X86 Security Technical Implementation Guide 2020-09-04

Details

Check Text ( C-29968r489775_chk )
Determine the audit log data path.
# grep "^dir:" /etc/security/audit_control

Determine if the audit log data path is a separate filesystem.
# df -h

If the returned mount point is "/" this is a finding.
Fix Text (F-29956r489776_fix)
Migrate the system audit data path onto a separate file system.