1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23
|
documentation_complete: true
title: 'Ensure One Logging Service Is In Use'
description: |-
Ensure that a logging system is active and in use.
<pre>
systemctl is-active rsyslog systemd-journald
</pre>
The command should return at least one <tt>active</tt>.
rationale: |-
The system should have one active logging service to avoid conflicts
and ensure consistency.
severity: medium
platform: machine
warnings:
- general: |-
This rule does not come with a remediation. There are specific rules
for enabling each logging service which should be enabled instead.
|