SRG-OS-000206-GPOS-00084 Controls

STIG IDVersionTitleProduct
ALMA-09-043800V1R1AlmaLinux OS 9 must not show boot up messages.
ALMA-09-043910V1R1AlmaLinux OS 9 /var/log directory must be group-owned by root.
ALMA-09-044020V1R1AlmaLinux OS 9 /var/log/messages file must be group-owned by root.
ALMA-09-044130V1R1AlmaLinux OS 9 /var/log/messages file must be owned by root.
ALMA-09-044240V1R1AlmaLinux OS 9 /var/log/messages file must have mode 0640 or less permissive.
ALMA-09-044350V1R1AlmaLinux OS 9 /var/log directory must be owned by root.
ALMA-09-044460V1R1AlmaLinux OS 9 /var/log directory must have mode 0755 or less permissive.
UBTU-18-010122V2R15The Ubuntu operating system must configure the /var/log directory to be group-owned by syslog.
UBTU-18-010123V2R15The Ubuntu operating system must configure the /var/log directory to be owned by root.
UBTU-18-010124V2R15The Ubuntu operating system must configure the /var/log directory to have mode 0755 or less permissive.
UBTU-18-010125V2R15The Ubuntu operating system must configure the /var/log/syslog file to be group-owned by adm.
UBTU-18-010126V2R15The Ubuntu operating system must configure /var/log/syslog file to be owned by syslog.
UBTU-18-010127V2R15The Ubuntu operating system must configure /var/log/syslog file with mode 0640 or less permissive.
UBTU-20-010417V1R9The Ubuntu operating system must configure the /var/log directory to be group-owned by syslog.
UBTU-20-010418V1R9The Ubuntu operating system must configure the /var/log directory to be owned by root.
UBTU-20-010419V1R9The Ubuntu operating system must configure the /var/log directory to have mode "0755" or less permissive.
UBTU-20-010420V1R9The Ubuntu operating system must configure the /var/log/syslog file to be group-owned by adm.
UBTU-20-010421V1R9The Ubuntu operating system must configure /var/log/syslog file to be owned by syslog.
UBTU-20-010422V1R9The Ubuntu operating system must configure /var/log/syslog file with mode 0640 or less permissive.
UBTU-24-700040V1R1Ubuntu 24.04 LTS must be configured so that the "journalctl" command is owned by "root".
UBTU-24-700050V1R1Ubuntu 24.04 LTS must be configured so that the "journalctl" command is group-owned by "root".
UBTU-24-700060V1R1Ubuntu 24.04 LTS must configure the directories used by the system journal to be group-owned by "systemd-journal".
UBTU-24-700070V1R1Ubuntu 24.04 LTS must configure the files used by the system journal to be group-owned by "systemd-journal".
UBTU-24-700080V1R1Ubuntu 24.04 LTS must configure the directories used by the system journal to be owned by "root".
UBTU-24-700090V1R1Ubuntu 24.04 LTS must configure the files used by the system journal to be owned by "root"
UBTU-24-700100V1R1Ubuntu 24.04 LTS must configure the /var/log directory to be group-owned by syslog.
UBTU-24-700110V1R1Ubuntu 24.04 LTS must configure the /var/log directory to be owned by root.
UBTU-24-700120V1R1Ubuntu 24.04 LTS must configure the /var/log directory to have mode "0755" or less permissive.
UBTU-24-700130V1R1Ubuntu 24.04 LTS must configure the /var/log/syslog file to be group-owned by adm.
UBTU-24-700140V1R1Ubuntu 24.04 LTS must configure /var/log/syslog file to be owned by syslog.
UBTU-24-700150V1R1Ubuntu 24.04 LTS must configure /var/log/syslog file with mode "0640" or less permissive.
WN11-AU-000035V2R1The system must be configured to audit Account Management - User Account Management failures.
UBTU-22-232025V2R1Ubuntu 22.04 LTS must configure the "/var/log" directory to have mode "755" or less permissive.
UBTU-22-232030V2R1Ubuntu 22.04 LTS must configure "/var/log/syslog" file with mode "640" or less permissive.
UBTU-22-232080V2R1Ubuntu 22.04 LTS must configure the directories used by the system journal to be owned by "root".
UBTU-22-232085V2R1Ubuntu 22.04 LTS must configure the directories used by the system journal to be group-owned by "systemd-journal".
UBTU-22-232090V2R1Ubuntu 22.04 LTS must configure the files used by the system journal to be owned by "root".
UBTU-22-232095V2R1Ubuntu 22.04 LTS must configure the files used by the system journal to be group-owned by "systemd-journal".
UBTU-22-232100V2R1Ubuntu 22.04 LTS must be configured so that the "journalctl" command is owned by "root".
UBTU-22-232105V2R1Ubuntu 22.04 LTS must be configured so that the "journalctl" command is group-owned by "root".
UBTU-22-232120V2R1Ubuntu 22.04 LTS must configure the "/var/log" directory to be owned by "root".
UBTU-22-232125V2R1Ubuntu 22.04 LTS must configure the "/var/log" directory to be group-owned by "syslog".
UBTU-22-232130V2R1Ubuntu 22.04 LTS must configure "/var/log/syslog" file to be owned by "syslog".
UBTU-22-232135V2R1Ubuntu 22.04 LTS must configure the "/var/log/syslog" file to be group-owned by "adm".
RHEL-08-010210V1R9The RHEL 8 /var/log/messages file must have mode 0640 or less permissive.
RHEL-08-010220V1R9The RHEL 8 /var/log/messages file must be owned by root.
RHEL-08-010230V1R9The RHEL 8 /var/log/messages file must be group-owned by root.
RHEL-08-010240V1R9The RHEL 8 /var/log directory must have mode 0755 or less permissive.
RHEL-08-010250V1R9The RHEL 8 /var/log directory must be owned by root.
RHEL-08-010260V1R9The RHEL 8 /var/log directory must be group-owned by root.
RHEL-09-232025V2R1RHEL 9 /var/log directory must have mode 0755 or less permissive.
RHEL-09-232030V2R1RHEL 9 /var/log/messages file must have mode 0640 or less permissive.
RHEL-09-232170V2R1RHEL 9 /var/log directory must be owned by root.
RHEL-09-232175V2R1RHEL 9 /var/log directory must be group-owned by root.
RHEL-09-232180V2R1RHEL 9 /var/log/messages file must be owned by root.
RHEL-09-232185V2R1RHEL 9 /var/log/messages file must be group-owned by root.
OL09-00-002560V1R1OL 9 /var/log directory must be group-owned by root.
OL09-00-002561V1R1OL 9 /var/log directory must be owned by root.
OL09-00-002562V1R1OL 9 /var/log directory must have mode 0755 or less permissive.
OL09-00-002563V1R1OL 9 /var/log/messages file must be group-owned by root.
OL09-00-002564V1R1OL 9 /var/log/messages file must be owned by root.
OL09-00-002565V1R1OL 9 /var/log/messages file must have mode 0640 or less permissive.
SLES-15-010350V1R9The SUSE operating system must prevent unauthorized users from accessing system error messages.
SLES-12-010890V2R13The SUSE operating system must prevent unauthorized users from accessing system error messages.
OL08-00-010210V1R9The OL 8 "/var/log/messages" file must have mode 0640 or less permissive.
OL08-00-010220V1R9The OL 8 "/var/log/messages" file must be owned by root.
OL08-00-010230V1R9The OL 8 "/var/log/messages" file must be group-owned by root.
OL08-00-010240V1R9The OL 8 "/var/log" directory must have mode 0755 or less permissive.
OL08-00-010250V1R9The OL 8 "/var/log" directory must be owned by root.
OL08-00-010260V1R9The OL 8 "/var/log" directory must be group-owned by root.
OL08-00-020262V1R9The OL 8 lastlog command must have a mode of "0750" or less permissive.
OL08-00-020263V1R9The OL 8 lastlog command must be owned by root.
OL08-00-020264V1R9The OL 8 lastlog command must be group-owned by root.