GEN002660 - Auditing must be implemented - 'chkconfig'

Information

Without auditing, individual system accesses cannot be tracked and malicious activity cannot be detected and traced back to an individual account.

Solution

Start the auditd service and set it to start on boot.
# service auditd start ; chkconfig auditd on

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-12a., CAT|II, CCE|CCE-4292-9, CCI|CCI-000169, Group-ID|V-811, Rule-ID|SV-27270r1_rule, STIG-ID|GEN002660, Vuln-ID|V-811

Plugin: Unix

Control ID: 92001dd51c53b732fff972e84238405bf12e6fd66ba40b621f64c251341ba5c6