UCF STIG Viewer Logo

Lookup Service must use a logging mechanism that is configured to allocate log record storage capacity large enough to accommodate the logging requirements of the web server.


Overview

Finding ID Version Rule ID IA Controls Severity
V-256732 VCLU-70-000027 SV-256732r888787_rule Medium
Description
To ensure the logging mechanism used by the web server has sufficient storage capacity in which to write the logs, the logging mechanism must be able to allocate log record storage capacity. Lookup Service configures log sizes and rotation appropriately as part of its installation routine. Verifying the logging configuration file (logging.properties) has not been modified is sufficient to determine if the logging configuration has been modified from the default.
STIG Date
VMware vSphere 7.0 vCenter Appliance Lookup Service Security Technical Implementation Guide 2023-06-15

Details

Check Text ( C-60407r888785_chk )
At the command prompt, run the following command:

# rpm -V vmware-lookupsvc|grep logging.properties|grep "^..5......"

If the above command returns any output, this is a finding.
Fix Text (F-60350r888786_fix)
Reinstall the vCenter Server Appliance (VCSA) or roll back to a backup. VMware does not support modifying the Lookup Service installation files manually.