GEN006600 - The system's access control program must log each system access attempt - /etc/rsyslog.conf not found

Information

If access attempts are not logged, then multiple attempts to log on to the system by an unauthorized user may go undetected.

NOTE: /etc/rsyslog.conf file is not found. Please ensure this matches policy.
NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Configure the access restriction program to log every access attempt. Ensure the implementation instructions for tcp_wrappers are followed so system access attempts are recorded to the system log files. If an alternate application is used, it must support this function.

See Also

http://iasecontent.disa.mil/stigs/zip/U_RedHat_5_V1R18_STIG.zip

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-2d., CAT|II, CCI|CCI-000126, Group-ID|V-941, Rule-ID|SV-37757r3_rule, STIG-ID|GEN006600, Vuln-ID|V-941

Plugin: Unix

Control ID: 7ea0679c0db6c53d8ec9854e3b63119fe1d667102115f74bfa7c75fba24e073f