8.4 Configure logrotate

Information

The system includes the capability of rotating log files regularly to avoid filling up the system with logs or making the logs unmanageable large. The file /etc/logrotate.d/rsyslog is the configuration file used to rotate log files created by rsyslog. By keeping the log files smaller and more manageable, a system administrator can easily archive these files to another system and spend less time looking through inordinately large log files.

Solution

Edit the /etc/logrotate.d/rsyslog file to include appropriate system logs according to your site policy.

See Also

https://workbench.cisecurity.org/files/85

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-11

Plugin: Unix

Control ID: 43bc0b5f1c8f3842a001d967b583f98567c97164e90b1cd2387b4ee220b0ed92