RHEL-06-000148 - The operating system must employ automated mechanisms to facilitate the monitoring and control of remote access methods - CHKCONFIG.

Information

Ensuring the 'auditd' service is active ensures audit records generated by the kernel can be written to disk, or that appropriate actions will be taken if other obstacles exist.

Solution

The 'auditd' service is an essential userspace component of the Linux Auditing System, as it is responsible for writing audit records to disk. The 'auditd' service can be enabled with the following commands:

# chkconfig auditd on
# service auditd start

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_RHEL_6_V2R2_STIG.zip

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-17(1), CAT|II, CCI|CCI-000067, Rule-ID|SV-217945r603264_rule, STIG-ID|RHEL-06-000148, STIG-Legacy|SV-50432, STIG-Legacy|V-38631, Vuln-ID|V-217945

Plugin: Unix

Control ID: d6dcb6d00a0ed2ec664201d9203867ae53f337f402f14608cd718055201a0963