UCF STIG Viewer Logo

Cron logging must be implemented.


Overview

Finding ID Version Rule ID IA Controls Severity
GEN003160-ESXI5-PNF GEN003160-ESXI5-PNF GEN003160-ESXI5-PNF_rule Medium
Description
Cron logging can be used to trace the successful or unsuccessful execution of cron jobs. It can also be used to spot intrusions into the use of the cron facility by unauthorized and malicious users. Permanent not a finding - crond (the cron daemon) is non-alterable C code, which is part of a much larger executable (busybox). cron logging is performed by default. There is no crond command parameter/switch to turn it off.
STIG Date
VMware ESXi v5 Security Technical Implementation Guide 2013-01-15

Details

Check Text ( C-GEN003160-ESXI5-PNF_chk )
ESXi supports this requirement and cannot be configured to be out of compliance. This is a permanent not a finding.
Fix Text (F-GEN003160-ESXI5-PNF_fix)
This requirement is permanent not a finding. No fix is required.