Skip to content

The OAuth Audit Logs Directory Must Have Mode 0700

An XCCDF Rule

Description

To properly set the permissions of /var/log/oauth-apiserver/, run the command:

$ sudo chmod 0700 /var/log/oauth-apiserver/

Rationale

If users can write to audit logs, audit trails can be modified or destroyed.

ID
xccdf_org.ssgproject.content_rule_directory_permissions_var_log_oauth_audit
Severity
Medium
References
Updated