SV-80685r1_rule
V-66195
SRG-APP-000120-NDM-000237
HFFS-ND-000038
CAT II
10
Configure the HP FlexFabric Switch to protect audit information from unauthorized deletion:
[HP] local-user security-user
[HP-luser-manage-security-user] authorization-attribute user-role security-audit
[HP-luser-manage-security-user] password
Password:xxxxxxxxxx
confirm: xxxxxxxxxx
[HP-luser-manage-security-user] service-type ssh terminal
Determine if the HP FlexFabric Switch protects audit information from any type of unauthorized deletion with such methods as ensuring log files receive the proper file system permissions utilizing file system protections, restricting access to log data and backing up log data to ensure log data is retained, and leveraging user permissions and roles to identify the user accessing the data and the corresponding rights the user enjoys.
[HP] display local-user
Device management user security-user:
State: Active
Service type: SSH/Terminal
User group: system
Bind attributes:
Authorization attributes:
Work directory: flash:
User role list: security-audit
If the HP FlexFabric Switch does not protect audit information from unauthorized deletion, this is a finding.
V-66195
False
HFFS-ND-000038
Determine if the HP FlexFabric Switch protects audit information from any type of unauthorized deletion with such methods as ensuring log files receive the proper file system permissions utilizing file system protections, restricting access to log data and backing up log data to ensure log data is retained, and leveraging user permissions and roles to identify the user accessing the data and the corresponding rights the user enjoys.
[HP] display local-user
Device management user security-user:
State: Active
Service type: SSH/Terminal
User group: system
Bind attributes:
Authorization attributes:
Work directory: flash:
User role list: security-audit
If the HP FlexFabric Switch does not protect audit information from unauthorized deletion, this is a finding.
M
2971