GEN000140 - A file integrity baseline must be created and maintained.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

A file integrity baseline is a collection of file metadata which is to evaluate the integrity of the system. A minimal baseline must contain metadata for all device files, setuid files, setgid files, system libraries, system binaries, and system configuration files. The minimal metadata must consist of the mode, owner, group owner, and modification times. For regular files, metadata must also include file size and a cryptographic hash of the file's contents.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Create a file integrity baseline, including cryptographic hashes, for the system.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_SOL_10_SPARC_V2R2_STIG.zip

Item Details

References: CAT|II, CCI|CCI-001744, Rule-ID|SV-226432r603265_rule, STIG-ID|GEN000140, STIG-Legacy|SV-12442, STIG-Legacy|V-11941, Vuln-ID|V-226432

Plugin: Unix

Control ID: 39b4a1ba889011115179818ef50f35e79c4623025f2c73625fd6698a24af62e8