GEN003660 - The system must log authentication informational data - 'auth.notice'

Information

Monitoring and recording successful and unsuccessful logins assists in tracking unauthorized access to the system.

Solution

Edit /etc/syslog.conf and add local log destinations for auth.*, auth.debug, auth.info, *.debug or *.info.

NOTE: In general and though not required, it is always advisable to explicitly declare auth.info or auth.debug entries rather than use the wildcard notation method.

See Also

https://iasecontent.disa.mil/stigs/zip/U_HPUX_11-31_V1R19_STIG.zip

Item Details

References: CAT|II, CCI|CCI-000126, Rule-ID|SV-35062r1_rule, STIG-ID|GEN003660, Vuln-ID|V-12004

Plugin: Unix

Control ID: 947e4072739a05f4e09d28b1ae6d77338e3cab72db81eb2db575b76d02be74c4