SV-80683r1_rule
V-66193
SRG-APP-000119-NDM-000236
HFFS-ND-000037
CAT II
10
Configure the HP FlexFabric Switch to protect audit information from unauthorized modification:
[HP] local-user security-user
[HP-luser-manage-security-user] authorization-attribute user-role security-audit
[HP-luser-manage-security-user] password
Password:xxxxxxxxxx
confirm: xxxxxxxxxx
[HP-luser-manage-security-user] service-type ssh terminal
Determine if the HP FlexFabric Switch protects audit information from any type of unauthorized modification with such methods as ensuring log files receive the proper file system permissions utilizing file system protections, restricting access to log data and backing up log data to ensure log data is retained, and leveraging user permissions and roles to identify the user accessing the data and the corresponding rights the user enjoys.
[HP] display local-user
Device management user security-user:
State: Active
Service type: SSH/Terminal
User group: system
Bind attributes:
Authorization attributes:
Work directory: flash:
User role list: security-audit
If the HP FlexFabric Switch does not protect audit information from unauthorized modification, this is a finding.
V-66193
False
HFFS-ND-000037
Determine if the HP FlexFabric Switch protects audit information from any type of unauthorized modification with such methods as ensuring log files receive the proper file system permissions utilizing file system protections, restricting access to log data and backing up log data to ensure log data is retained, and leveraging user permissions and roles to identify the user accessing the data and the corresponding rights the user enjoys.
[HP] display local-user
Device management user security-user:
State: Active
Service type: SSH/Terminal
User group: system
Bind attributes:
Authorization attributes:
Work directory: flash:
User role list: security-audit
If the HP FlexFabric Switch does not protect audit information from unauthorized modification, this is a finding.
M
2971