Skip to content

Verify Owner on the system journal

An XCCDF Rule

Description

To properly set the owner of /var/log/journal/.*/system.journal, run the command:

$ sudo chown root /var/log/journal/.*/system.journal 

Rationale

RHCOS must protect system journal file from any type of unauthorized access by setting file ownership

ID
xccdf_org.ssgproject.content_rule_file_owner_system_journal
Severity
Medium
References
Updated