1.3.2 Ensure filesystem integrity is regularly checked

Information

Periodic file checking allows the system administrator to determine on a regular basis if
critical files have been changed in an unauthorized fashion.

Solution

Run the following command - # crontab -u root -eAdd the following line to the crontab-0 5 * * * /usr/sbin/aide --checkNotes-The checking in this recommendation occurs every day at 5am. Alter the frequency and time of the checks in compliance with site policy.

See Also

https://workbench.cisecurity.org/files/1863

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-7(1), CSCv6|3.5

Plugin: Unix

Control ID: 9e5a56479067f2b42c21c072bf5564df6e10ed7e10af2d0ab34a3d91cd1a7aa7