GEN006560 - The system VA tool, HIDS tool, and file integrity tool must notify of a security breach or a suspected security breach.

Information

Timely notifications of potential security compromises minimize the potential damage.

Minimally, the system must log these events, and the SA and the ISSO will receive the notifications during the daily system log review. If feasible, active alerting (such as e-mail or paging) should be employed consistent with the site's established operations management systems and procedures.
NOTE: Nessus has not performed this query, and this check is only provided for informational purposes.

Solution

Configure the security tools on the system to notify the IAO and SA when any security issues are detected.

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R17_STIG.zip

Item Details

References: CAT|II, CCI|CCI-000366, CCI|CCI-001266, Group-ID|V-12028, Rule-ID|SV-37747r2_rule, STIG-ID|GEN006560

Plugin: Unix

Control ID: 4b7d7d80662ad2eb78dd0ee66a1773746ba232094452708925f9c37a82a15033