800-53|AU-14(1)

Title

SYSTEM START-UP

Description

The information system initiates session audits at system start-up.

Reference Item Details

Category: AUDIT AND ACCOUNTABILITY

Parent Title: SESSION AUDIT

Family: AUDIT AND ACCOUNTABILITY

Audit Items

View all Reference Audit Items

NamePluginAudit Name
4.1.1.2 Ensure auditd service is enabled and running - runningUnixCIS Red Hat EL7 Server L2 v3.0.1
4.1.1.2 Ensure auditd service is enabled and running - runningUnixCIS Red Hat EL7 Workstation L2 v3.0.1
4.1.1.2 Ensure auditd service is enabled and running - runningUnixCIS SUSE Linux Enterprise 15 Workstation L2 v1.0.0
4.1.1.2 Ensure auditd service is enabled and running - runningUnixCIS Oracle Linux 7 Workstation L2 v3.0.0
4.1.1.2 Ensure auditd service is enabled and running - runningUnixCIS Oracle Linux 7 Server L2 v3.0.0
4.1.1.2 Ensure auditd service is enabled and running - runningUnixCIS SUSE Linux Enterprise 15 Server L2 v1.0.0
4.1.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Oracle Linux 8 Workstation L2 v1.0.0
4.1.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Red Hat EL7 Server L2 v3.0.1
4.1.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Ubuntu Linux 20.04 LTS Workstation L2 v1.0.0
4.1.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Oracle Linux 7 Server L2 v3.0.0
4.1.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS CentOS Linux 8 Server L2 v1.0.0
4.1.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS CentOS Linux 8 Workstation L2 v1.0.0
4.1.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Ubuntu Linux 18.04 LTS Server L2 v2.0.1
4.1.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Ubuntu Linux 20.04 LTS Server L2 v1.0.0
4.1.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Red Hat EL8 Server L2 v1.0.0
4.1.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Ubuntu Linux 18.04 LTS Workstation L2 v2.0.1
4.1.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Red Hat EL7 Workstation L2 v3.0.1
4.1.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Oracle Linux 7 Workstation L2 v3.0.0
4.1.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Oracle Linux 8 Server L2 v1.0.0
4.1.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Red Hat EL8 Workstation L2 v1.0.0
4.1.1.4 Ensure audit_backlog_limit is sufficientUnixCIS Red Hat EL8 Server L2 v1.0.0
4.1.1.4 Ensure audit_backlog_limit is sufficientUnixCIS Ubuntu Linux 18.04 LTS Workstation L2 v2.0.1
4.1.1.4 Ensure audit_backlog_limit is sufficientUnixCIS CentOS Linux 8 Server L2 v1.0.0
4.1.1.4 Ensure audit_backlog_limit is sufficientUnixCIS Ubuntu Linux 18.04 LTS Server L2 v2.0.1
4.1.1.4 Ensure audit_backlog_limit is sufficientUnixCIS CentOS Linux 8 Workstation L2 v1.0.0
4.1.1.4 Ensure audit_backlog_limit is sufficientUnixCIS Ubuntu Linux 20.04 LTS Server L2 v1.0.0
4.1.1.4 Ensure audit_backlog_limit is sufficientUnixCIS Ubuntu Linux 20.04 LTS Workstation L2 v1.0.0
4.1.1.4 Ensure audit_backlog_limit is sufficientUnixCIS Oracle Linux 8 Server L2 v1.0.0
4.1.1.4 Ensure audit_backlog_limit is sufficientUnixCIS Oracle Linux 8 Workstation L2 v1.0.0
4.1.1.4 Ensure audit_backlog_limit is sufficientUnixCIS Red Hat EL8 Workstation L2 v1.0.0
4.1.2.4 Ensure audit_backlog_limit is sufficientUnixCIS Oracle Linux 7 Server L2 v3.0.0
4.1.2.4 Ensure audit_backlog_limit is sufficientUnixCIS SUSE Linux Enterprise 15 Server L2 v1.0.0
4.1.2.4 Ensure audit_backlog_limit is sufficientUnixCIS SUSE Linux Enterprise 15 Workstation L2 v1.0.0
4.1.2.4 Ensure audit_backlog_limit is sufficientUnixCIS Oracle Linux 7 Workstation L2 v3.0.0
4.1.2.4 Ensure audit_backlog_limit is sufficientUnixCIS Red Hat EL7 Workstation L2 v3.0.1
4.1.2.4 Ensure audit_backlog_limit is sufficientUnixCIS Red Hat EL7 Server L2 v3.0.1
4.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS SUSE Linux Enterprise Server 12 L2 v2.1.0
4.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS CentOS 6 Server L2 v2.1.0
4.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Oracle Linux 6 Server L2 v1.1.0
4.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS SUSE Linux Enterprise Workstation 12 L2 v2.1.0
4.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Amazon Linux 2 v1.0.0 L2
4.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Oracle Linux 6 Workstation L2 v1.1.0
4.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Ubuntu Linux 16.04 LTS Server L2 v1.1.0
4.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Ubuntu Linux 16.04 LTS Workstation L2 v1.1.0
4.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS CentOS 6 Workstation L2 v2.1.0
4.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Red Hat 6 Server L2 v2.1.0
4.1.3 Ensure auditing for processes that start prior to auditd is enabledUnixCIS Red Hat 6 Workstation L2 v2.1.0
5.3.6 Enable Auditing for Processes That Start Prior to auditd 'kernel .* audit = 1'UnixCIS Red Hat Enterprise Linux 5 L2 v2.2
AIX7-00-002023 - AIX must start audit at boot.UnixDISA STIG AIX 7.x v2r1
AIX7-00-002023 - AIX must start audit at boot.UnixDISA STIG AIX 7.x v2r3