SV-227952r603266_rule
V-227952
SRG-OS-000191
GEN006480
CAT II
10
Install a host-based intrusion detection tool.
Ask the SA or IAO if a host-based intrusion detection application is loaded on the system.
Determine if the application is loaded on the system.
Procedure:
# find / -name <daemon name> -print
Determine if the application is active on the system.
Procedure:
# ps -ef | grep <daemon name>
If no host-based intrusion detection system is installed on the system, this is a finding.
V-227952
False
GEN006480
Ask the SA or IAO if a host-based intrusion detection application is loaded on the system.
Determine if the application is loaded on the system.
Procedure:
# find / -name <daemon name> -print
Determine if the application is active on the system.
Procedure:
# ps -ef | grep <daemon name>
If no host-based intrusion detection system is installed on the system, this is a finding.
M
4061