[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250039

 
 

909

 
 

195882

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Ensure journald is configured to send logs to rsyslog

ID: oval:org.secpod.oval:def:68725Date: (C)2021-01-31   (M)2023-12-20
Class: COMPLIANCEFamily: unix




Data from journald may be stored in volatile memory or persisted locally on the server. Utilities exist to accept remote export of journald logs, however, use of the rsyslog service provides a consistent means of log collection and export. Rationale: Storing log data on a remote host protects log integrity from local attacks. If an attacker gains root access on the local system, they could tamper with or remove log data that is stored on the local system.

Platform:
Ubuntu 18.04
Reference:
CCE-95672-2
CPE    1
cpe:/o:ubuntu:ubuntu_linux:18.04
CCE    1
CCE-95672-2
XCCDF    1
xccdf_org.secpod_benchmark_general_Ubuntu_18_04

© SecPod Technologies