Ensure session initiation information is collected – auditctl btmp Details Monitor session initiation events. The parameters in this section track changes to the files associated with session events. The...
Ensure session initiation information is collected – auditctl utmp Details Monitor session initiation events. The parameters in this section track changes to the files associated with session events. The...
Ensure session initiation information is collected – auditctl wtmp Details Monitor session initiation events. The parameters in this section track changes to the files associated with session events. The...
Ensure session initiation information is collected – btmp Details Monitor session initiation events. The parameters in this section track changes to the files associated with session events. The...
Ensure session initiation information is collected – utmp Details Monitor session initiation events. The parameters in this section track changes to the files associated with session events. The...
Ensure session initiation information is collected – wtmp Details Monitor session initiation events. The parameters in this section track changes to the files associated with session events. The...
Ensure SETroubleshoot is not installed Details The SETroubleshoot service notifies desktop users of SELinux denials through a user-friendly interface. The service provides important information around...
Ensure system is disabled when audit logs are full – ‘action_mail_acct = root’ Details The auditd daemon can be configured to halt the system when the audit logs are full. Rationale: In high...
Ensure system is disabled when audit logs are full – ‘admin_space_left_action = halt’ Details The auditd daemon can be configured to halt the system when the audit logs are full. Rationale: In high...
Ensure system is disabled when audit logs are full – ‘space_left_action = email’ Details The auditd daemon can be configured to halt the system when the audit logs are full. Rationale: In high...