1. Home
  2. Security Hardening
  3. DISA STIG Apache Site 2.2 Unix V1R11 Middleware
  4. WG250 A22 – Log file access must be restricted to System Administrators, Web Administrators or Auditors.

WG250 A22 – Log file access must be restricted to System Administrators, Web Administrators or Auditors.

Details

A major tool in exploring the web site use, attempted use, unusual conditions, and problems are the access and error logs. In the event of a security incident, these logs can provide the SA and the web manager with valuable information. To ensure the integrity of the log files and protect the SA and the web manager from a conflict of interest related to the maintenance of these files, only the members of the Auditors group will be granted permissions to move, copy, and delete these files in the course of their duties related to the archiving of these files.

Solution

Use the chmod command to set the appropriate file permissions on the log files.

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Configuration Management.This control applies to the following type of system Unix.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles