UCF STIG Viewer Logo

The system must use a separate file system for the system audit data path.


Overview

Finding ID Version Rule ID IA Controls Severity
V-23738 GEN003623 SV-28628r1_rule ECSC-1 Low
Description
The use of separate file systems for different paths can protect the system from failures resulting from a file system becoming full or failing.
STIG Date
SOLARIS 9 SPARC SECURITY TECHNICAL IMPLEMENTATION GUIDE 2015-10-01

Details

Check Text ( C-28877r1_chk )
Determine the audit log data path.
# grep "^dir:" /etc/security/audit_control
Determine if the audit log data path is a separate filesystem.
# grep /etc/vfstab
If no result is returned, the audit data path is not on a separate filesystem and this is a finding.
Fix Text (F-25904r1_fix)
Migrate the system audit data path onto a separate file system.