4.3 Enable Debug Level Daemon Logging - Check if permissions for /var/log/connlog are OK.

Information

If the FTP service is installed and enabled on the system, Item 4.2 Enable FTP daemon Logging enables the 'debugging' (-d) and connection logging (-l) flags to track FTP activity on the system. Similarly, the tracing (-t) option to inetd was enabled in Item 4.1 Enable inetd Connection Logging.

Solution

Please refer to the remediation steps on page 67 of the CIS document.

See Also

https://workbench.cisecurity.org/files/614

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-12c., CSCv6|3.1

Plugin: Unix

Control ID: cec03efd09b073fcb6447d97da7855102a8c374b6fa8e273077612b92dc5d6bb