CA VM:Secure product AUDIT file must be restricted to authorized personnel.
Overview
Finding ID
Version
Rule ID
IA Controls
Severity
V-237907
IBMZ-VM-000190
SV-237907r649561_rule
Medium
Description
Unauthorized disclosure of audit records can reveal system and configuration data to attackers, thus compromising its confidentiality.
Audit information includes all information (e.g., audit records, audit settings, audit reports) needed to successfully audit operating system activity.
Satisfies: SRG-OS-000057-GPOS-00027, SRG-OS-000058-GPOS-00028, SRG-OS-000059-GPOS-00029