Ensure audit log storage size is configured Details Configure the maximum size of the audit log file. Once the log reaches the maximum size, it will be...
Ensure augenrules is enabled Details augenrules reads rules from files ending in .rules within the /etc/audit/rules.d directory. These rules are written to the main...
Ensure Avahi Server is not installed – avahi Details Avahi is a free zeroconf implementation, including a system for multicast DNS/DNS-SD service discovery. Avahi allows programs to publish...
Ensure events that modify date and time information are collected – auditctl adjtimex settimeofday 32-bit Details Capture events where the system date and/or time has been modified. The parameters in this section are set to...
Ensure events that modify date and time information are collected – auditctl adjtimex settimeofday 64-bit Details Capture events where the system date and/or time has been modified. The parameters in this section are set to...
Ensure events that modify date and time information are collected – auditctl adjtimex settimeofday64-bit Details Capture events where the system date and/or time has been modified. The parameters in this section are set to...
Ensure events that modify date and time information are collected – auditctl clock_settime 32-bit Details Capture events where the system date and/or time has been modified. The parameters in this section are set to...
Ensure events that modify date and time information are collected – auditctl clock_settime 64-bit Details Capture events where the system date and/or time has been modified. The parameters in this section are set to...
Ensure events that modify date and time information are collected – auditctl /etc/localtime Details Capture events where the system date and/or time has been modified. The parameters in this section are set to...
Ensure events that modify date and time information are collected – rules.d adjtimex settimeofday 32-bit Details Capture events where the system date and/or time has been modified. The parameters in this section are set to...