GEN000220 - A file integrity tool must be used at least weekly to check for unauthorized file changes.

Information

A file integrity tool must be used at least weekly to check for unauthorized file changes, particularly the addition of unauthorized system libraries or binaries, or for unauthorized modification to authorized system libraries or binaries.

Solution

Create a cron job, scheduled to run weekly or more frequently, to run the file integrity tool to check for unauthorized system libraries or binaries, or unauthorized modification to authorized system libraries or binaries.
NOTE: For MAC I systems, increase the frequency to daily.

See Also

http://iasecontent.disa.mil/stigs/zip/U_STIG_Library_2015_07.zip

Item Details

Category: RISK ASSESSMENT

References: 800-53|RA-5(7), CAT|II, CCI|CCI-001069, Rule-ID|SV-28610r1_rule, STIG-ID|GEN000220, Vuln-ID|V-11945

Plugin: Unix

Control ID: de516dbbe3da60009618b5f4eb361a511cd3588f13897069bee39d45c767ea51