GEN003660 - The system must log informational authentication data - authpriv.info

Information

Monitoring and recording successful and unsuccessful logins assists in tracking unauthorized access to the system.

Solution

Edit /etc/syslog.conf or /etc/rsyslog.conf and add local log destinations for 'authpriv.*', 'authpriv.debug' or 'authpriv.info'.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_Oracle_Linux_5_V2R1_STIG.zip

Item Details

Category: AUDIT AND ACCOUNTABILITY, CONFIGURATION MANAGEMENT

References: 800-53|AU-2d., 800-53|CM-6b., CAT|II, CCI|CCI-000126, CCI|CCI-000366, Rule-ID|SV-218497r603259_rule, STIG-ID|GEN003660, STIG-Legacy|SV-64229, STIG-Legacy|V-12004, Vuln-ID|V-218497

Plugin: Unix

Control ID: 4a09fb70a223c0f4b4e070ede45222984a332cab2f48ec82e4dcef00c7c1f988