1. Home
  2. Security Hardening
  3. CIS Apache Tomcat 7 L1 V1.1.0
  4. Ensure directory in logging.properties is a secure location (check application log directory is secure)

Ensure directory in logging.properties is a secure location (check application log directory is secure)

Details

The directory attribute tells Tomcat where to store logs. The directory value should be a secure location with restricted access.

Solution

Perform the following:
1. Add the following properties into your logging.properties file if they do not exist
.org.apache.juli.FileHandler.directory=
.org.apache.juli.FileHandler.prefix=
2. Set the location pointed to by the directory attribute to be owned by tomcat_admin:tomcat with permissions of o-rwx.
# chown tomcat_admin:tomcat
# chmod o-rwx

Supportive Information

The following resource is also helpful.

This control applies to the following type of system Unix.

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles