SOL-11.1-020040 - The operating system must protect audit tools from unauthorized modification.

Information

Failure to maintain system configurations may result in privilege escalation.

Solution

The Software Installation Profile is required.

Configure the package system to ensure that digital signatures are verified.

# pfexec pkg set-property signature-policy verify

Check that package permissions are configured per vendor requirements.

# pfexec pkg verify

If any errors are reported unrelated to STIG changes, use:

# pfexec pkg fix

to bring configuration settings and permissions into factory compliance.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_11_SPARC_V3R1_STIG.zip

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-9, CAT|II, CCI|CCI-001494, Rule-ID|SV-216283r958612_rule, STIG-ID|SOL-11.1-020040, STIG-Legacy|SV-60759, STIG-Legacy|V-47887, Vuln-ID|V-216283

Plugin: Unix

Control ID: 220e76583974bd436cc567e6525593f0b852589b8d6b9290c66a45051b7f1420