UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

The system must use a separate file system for the system audit data path.


Overview

Finding ID Version Rule ID IA Controls Severity
V-23738 GEN003623 SV-28628r1_rule ECSC-1 Low
Description
The use of separate file systems for different paths can protect the system from failures resulting from a file system becoming full or failing.
STIG Date
Solaris 9 SPARC Security Technical Implementation Guide 2013-04-10

Details

Check Text ( C-28877r1_chk )
Determine the audit log data path.
# grep "^dir:" /etc/security/audit_control
Determine if the audit log data path is a separate filesystem.
# grep /etc/vfstab
If no result is returned, the audit data path is not on a separate filesystem and this is a finding.
Fix Text (F-25904r1_fix)
Migrate the system audit data path onto a separate file system.