5.2 Ensure that audit filters are configured properly

Information

MongoDB Enterprise supports auditing of various operations. When enabled, the audit facility, by default, records all auditable operations as detailed in Audit Event Actions, Details, and Results. To specify which events to record, the audit feature includes the --auditFilter option. This check is only for Enterprise editions.

Rationale:

All operations carried out on the database are logged. This helps in backtracking and tracing any incident that occurs.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

Set the audit filters based on the organizations requirements.

Default Value:

Not configured

See Also

https://workbench.cisecurity.org/files/1725

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-12c., CSCv6|6.2

Plugin: Unix

Control ID: c78e10222ab8ee80a77ea0737a33786e15aa847df875fe2aa0c844a9be7ce3d1