4.3 Enable Debug Level Daemon Logging/4.4 Capture syslog AUTH Messages - Check if svc:/system/system-log is online

Information

If the FTP service is installed and enabled on the system, Item 4.2 Enable FTP daemon Logging enables the 'debugging' (-d) and connection logging (-l) flags to track FTP activity on the system. Similarly, the tracing (-t) option to inetd was enabled in Item 4.1 Enable inetd Connection Logging.

Solution

Please refer to the remediation steps on page 67 of the CIS document.

See Also

https://workbench.cisecurity.org/files/614

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-12c., CSCv6|9.1

Plugin: Unix

Control ID: cec03efd09b073fcb6447d97da7855102a8c374b6fa8e273077612b92dc5d6bb