VCPF-70-000029 - Performance Charts must properly configure log sizes and rotation.

Information

To ensure the logging mechanism used by the web server has sufficient storage capacity in which to write the logs, the logging mechanism must be able to allocate log record storage capacity. Performance Charts properly sizes and configures log rotation during installation. This default configuration must be verified.

Solution

Navigate to and open:

/etc/vmware-perfcharts/log4j.properties

Ensure the appender.rolling entries are configured as follows:

appender.rolling.type = RollingFile
appender.rolling.name = FileLog
appender.rolling.fileName = /var/log/vmware/perfcharts/stats.log
appender.rolling.filePattern = /var/log/vmware/perfcharts/stats-%i.log
appender.rolling.policies.type = Policies
appender.rolling.policies.size.type = SizeBasedTriggeringPolicy
appender.rolling.policies.size.size = 5MB
appender.rolling.strategy.type = DefaultRolloverStrategy
appender.rolling.strategy.max = 10
appender.rolling.layout.type = PatternLayout
appender.rolling.layout.pattern = %d{yyyy-MM-dd'T'HH:mm:ss.SSSXXX} [%t %-5p %c] %m%n
appender.rolling.level = info

Note: This fix is currently only applicable to 7.0 U2+ and is different in older versions.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_VMW_vSphere_7-0_Y23M07_STIG.zip

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-4, CAT|II, CCI|CCI-001849, Rule-ID|SV-256639r888408_rule, STIG-ID|VCPF-70-000029, Vuln-ID|V-256639

Plugin: Unix

Control ID: 64e92e39638b74ce41c48345006c791e04e9dfe1b8fb2eaaad2fdecf97754b95