File: rule.yml

package info (click to toggle)
scap-security-guide 0.1.78-1
  • links: PTS, VCS
  • area: main
  • in suites: forky, sid
  • size: 114,600 kB
  • sloc: xml: 245,305; sh: 84,381; python: 33,093; makefile: 27
file content (18 lines) | stat: -rw-r--r-- 600 bytes parent folder | download | duplicates (2)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
documentation_complete: true


title: 'Disable Logwatch on Clients if a Logserver Exists'

description: |-
    Does your site have a central logserver which has been configured to report
    on logs received from all systems? If so:
    <pre>$ sudo rm /etc/cron.daily/0logwatch</pre>
    If no logserver exists, it will be necessary for each system to run
    Logwatch individually. Using a central logserver provides the security and
    reliability benefits discussed earlier, and also makes monitoring logs
    easier and less time-intensive for administrators.

rationale: ""

severity: unknown