1.4.2 Ensure filesystem integrity is regularly checked

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Periodic checking of the filesystem integrity is needed to detect changes to the filesystem. Periodic file checking allows the system administrator to determine on a regular basis if critical files have been changed in an unauthorized fashion.

Solution

Run the following commands: # cp ./config/aidecheck.service /etc/systemd/system/aidecheck.service
# cp ./config/aidecheck.timer /etc/systemd/system/aidecheck.timer
# chmod 0644 /etc/systemd/system/aidecheck.* # systemctl reenable aidecheck.timer
# systemctl restart aidecheck.timer
# systemctl daemon-reload ORRun the following command: # crontab -u root -e Add the following line to the crontab: 0 5 * * * /usr/sbin/aide --check

See Also

https://workbench.cisecurity.org/files/2518