SV-98921r1_rule
V-88271
SRG-APP-000226-DB-000147
VROM-PG-000255
CAT II
10
At the command prompt, execute the following commands:
# /opt/vmware/vpostgres/current/bin/psql -U postgres -c "ALTER SYSTEM SET <name> TO 'on';"
# /opt/vmware/vpostgres/current/bin/psql -U postgres -c "SELECT pg_reload_conf();"
Note: Substitute <name> with the incorrectly set parameter.
At the command prompt, execute the following command:
# /opt/vmware/vpostgres/current/bin/psql -U postgres -c "SELECT name, setting FROM pg_settings WHERE name IN ('fsync','full_page_writes','synchronous_commit');"
If "fsync", "full_page_writes", and "synchronous_commit" are not set to "on", this is a finding.
The command should return the below lines:
name | setting
---------------------------+---------
fsync | on
full_page_writes | on
synchronous_commit | on
(3 rows)
V-88271
False
VROM-PG-000255
At the command prompt, execute the following command:
# /opt/vmware/vpostgres/current/bin/psql -U postgres -c "SELECT name, setting FROM pg_settings WHERE name IN ('fsync','full_page_writes','synchronous_commit');"
If "fsync", "full_page_writes", and "synchronous_commit" are not set to "on", this is a finding.
The command should return the below lines:
name | setting
---------------------------+---------
fsync | on
full_page_writes | on
synchronous_commit | on
(3 rows)
M
3445