SV-239117r675159_rule
V-239117
SRG-OS-000240-GPOS-00090
PHTN-67-000046
CAT II
10
At the command line, execute the following commands:
# echo '-w /usr/bin/passwd -p x -k passwd' >> /etc/audit/rules.d/audit.STIG.rules
# /sbin/augenrules --load
At the command line, execute the following command:
# auditctl -l | grep watch=/usr/bin/passwd
Expected result:
-w /usr/bin/passwd -p x -k passwd
If the output does not match the expected result, this is a finding.
V-239117
False
PHTN-67-000046
At the command line, execute the following command:
# auditctl -l | grep watch=/usr/bin/passwd
Expected result:
-w /usr/bin/passwd -p x -k passwd
If the output does not match the expected result, this is a finding.
M
5323