Configure grub2 to enable auditing for processes that start prior to auditd daemon startup
Idioma do texto original: inglês
Menu
Skills neste repositório
O SkillsMP coletou 7.442 skills de CyberStrikeus/CyberStrike. Abra uma skill para revisar a origem e os detalhes.
CyberStrikeus/CyberStrikeMostrando 40 de 7.442 skills coletadas.
Configure grub2 to enable auditing for processes that start prior to auditd daemon startup
Idioma do texto original: inglês
Configure the audit_backlog_limit kernel parameter to prevent audit event loss
Idioma do texto original: inglês
Configure the maximum size of audit log files to prevent system impact and audit data loss
Idioma do texto original: inglês
Configure auditd to keep audit logs and never delete them automatically
Idioma do texto original: inglês
Configure the system to halt when audit logs are full to prevent data loss
Idioma do texto original: inglês
Ensure changes to system administration scope (sudoers) is collected
Idioma do texto original: inglês
Ensure unsuccessful unauthorized file access attempts are collected
Idioma do texto original: inglês
Ensure successful file system mounts are collected
Idioma do texto original: inglês
Ensure login and logout events are collected
Idioma do texto original: inglês
Ensure file deletion events by users are collected
Idioma do texto original: inglês
Ensure events that modify the system's Mandatory Access Controls are collected
Idioma do texto original: inglês
Ensure successful and unsuccessful attempts to use the chcon command are recorded
Idioma do texto original: inglês
Ensure successful and unsuccessful attempts to use the setfacl command are recorded
Idioma do texto original: inglês
Ensure successful and unsuccessful attempts to use the chacl command are recorded
Idioma do texto original: inglês
Ensure successful and unsuccessful attempts to use the usermod command are recorded
Idioma do texto original: inglês
Ensure kernel module loading and unloading is collected
Idioma do texto original: inglês
Ensure actions as another user are always logged
Idioma do texto original: inglês
Ensure the audit configuration is immutable
Idioma do texto original: inglês
Ensure the running and on disk configuration is the same
Idioma do texto original: inglês
Ensure events that modify the sudo log file are collected
Idioma do texto original: inglês
Ensure events that modify date and time information are collected
Idioma do texto original: inglês
Ensure events that modify the system's network environment are collected
Idioma do texto original: inglês
Ensure use of privileged commands are collected
Idioma do texto original: inglês
Ensure unsuccessful file access attempts are collected
Idioma do texto original: inglês
Ensure events that modify user/group information are collected
Idioma do texto original: inglês
Ensure discretionary access control permission modification events are collected
Idioma do texto original: inglês
version: "2.2.0"
Idioma do texto original: inglês
version: "2.2.0"
Idioma do texto original: inglês
version: "2.2.0"
Idioma do texto original: inglês
version: "2.2.0"
Idioma do texto original: inglês
version: "2.2.0"
Idioma do texto original: inglês
version: "2.2.0"
Idioma do texto original: inglês
version: "2.2.0"
Idioma do texto original: inglês
version: "2.2.0"
Idioma do texto original: inglês
version: "2.2.0"
Idioma do texto original: inglês
version: "2.2.0"
Idioma do texto original: inglês
version: "2.2.0"
Idioma do texto original: inglês
Ensure unused filesystems kernel modules are not available
Idioma do texto original: inglês
Ensure squashfs kernel module is not available
Idioma do texto original: inglês
Ensure nodev option set on /tmp partition
Idioma do texto original: inglês