SV-220061r603265_rule
V-220061
SRG-OS-000480
GEN006480
CAT II
10
Install a host-based intrusion detection tool.
Ask the SA or IAO if a host-based intrusion detection application is loaded on the system.
Determine if the application is loaded on the system.
Procedure:
# find / -name <daemon name> -print
Determine if the application is active on the system.
Procedure:
# ps -ef | grep <daemon name>
If no host-based intrusion detection system is installed on the system, this is a finding.
V-220061
False
GEN006480
Ask the SA or IAO if a host-based intrusion detection application is loaded on the system.
Determine if the application is loaded on the system.
Procedure:
# find / -name <daemon name> -print
Determine if the application is active on the system.
Procedure:
# ps -ef | grep <daemon name>
If no host-based intrusion detection system is installed on the system, this is a finding.
M
4060