Skip to content

The audit system must be configured to audit the loading and unloading of dynamic kernel modules.

An XCCDF Rule

Description

Without auditing, individual system accesses cannot be tracked, and malicious activity cannot be detected and traced back to an individual account.

ID
SV-219992r958442_rule
Version
SOL-11.1-010330
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

The Audit Configuration profile is required. All audit flags must be enabled in a single command.

This action applies to the global zone only. Determine the zone currently being secured.

# zonename