GEN002680 - System audit logs must be owned by root.

Information

Failure to give ownership of system audit log files to root provides the designated owner and unauthorized users with the potential to access sensitive information.

Solution

Change the ownership of the audit log file(s).

Procedure:
# chown root <audit log file>

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-9, CAT|II, CCI|CCI-000162, Group-ID|V-812, Rule-ID|SV-37912r1_rule, STIG-ID|GEN002680, Vuln-ID|V-812

Plugin: Unix

Control ID: 3d46d8f4c1a48304541e5eed3f2f5483dc9fbf54df4e584c38be5d05d4eb563f