Ensure events that modify user/group information are collected – ‘/etc/group’ Details Record events affecting the group , passwd (user IDs), shadow and gshadow (passwords) or /etc/security/opasswd (old passwords, based on...
Ensure events that modify user/group information are collected – ‘/etc/gshadow’ Details Record events affecting the group , passwd (user IDs), shadow and gshadow (passwords) or /etc/security/opasswd (old passwords, based on...
Ensure events that modify user/group information are collected – ‘/etc/passwd’ Details Record events affecting the group , passwd (user IDs), shadow and gshadow (passwords) or /etc/security/opasswd (old passwords, based on...
Ensure events that modify user/group information are collected – ‘/etc/security/opasswd’ Details Record events affecting the group , passwd (user IDs), shadow and gshadow (passwords) or /etc/security/opasswd (old passwords, based on...
Ensure events that modify user/group information are collected – ‘/etc/shadow’ Details Record events affecting the group , passwd (user IDs), shadow and gshadow (passwords) or /etc/security/opasswd (old passwords, based on...
Ensure mounting of squashfs filesystems is disabled – lsmod Details The squashfs filesystem type is a compressed read-only Linux filesystem embedded in small footprint systems (similar to cramfs )....
Ensure mounting of squashfs filesystems is disabled – modprobe Details The squashfs filesystem type is a compressed read-only Linux filesystem embedded in small footprint systems (similar to cramfs )....
Ensure SCTP is disabled – lsmod Details The Stream Control Transmission Protocol (SCTP) is a transport layer protocol used to support message oriented communication, with several...
Ensure SCTP is disabled – modprobe Details The Stream Control Transmission Protocol (SCTP) is a transport layer protocol used to support message oriented communication, with several...
Ensure separate partition exists for /home Details The /home directory is used to support disk storage needs of local users. Rationale: If the system is intended...