SOL-11.1-010410 - The operating system must configure auditing to reduce the likelihood of storage capacity being exceeded.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Overflowing the audit storage area can result in a denial of service or system outage.

Solution

The Audit Control profile is required.

This action applies to the global zone only. Determine the zone that you are currently securing.

# zonename

If the command output is 'global', this action applies.

Set the size of a binary audit file to a specific size. The size is specified in megabytes.

# pfexec auditconfig -setplugin audit_binfile p_fsize=4M

Restart the audit system.

# pfexec audit -s

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_11_SPARC_V2R4_STIG.zip

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-12, CAT|I, CCI|CCI-001849, Rule-ID|SV-219968r603267_rule, STIG-ID|SOL-11.1-010410, STIG-Legacy|SV-62545, STIG-Legacy|V-49621, Vuln-ID|V-219968

Plugin: Unix

Control ID: 0723da3e614e5171e4bb4484e5b76ad0cf623acba5a635d1443f4509f98a3a46