19.12.2012 Views

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Safeguard Catalogue - Hardware & Software Remarks<br />

____________________________________________________________________ .........................................<br />

commencing actual operation. <strong>The</strong> summary created should be stored on a<br />

write protected data medium.<br />

- To ensure that malicious generation of log data cannot bring the Unix<br />

system to a halt, /var should be a large partition.<br />

All changes carried out should be carefully documented and be agreed among<br />

all the system administrators. This documentation can be in paper form or in a<br />

file that is maintained on the system concerned. However, it must be possible<br />

for the documentation to be inspected and updated at any time (see also S 2.34<br />

Documentation on changes made to an existing <strong>IT</strong> system).<br />

Additional controls:<br />

- What services are enabled on the <strong>IT</strong> system?<br />

- Have all the available security patches been installed in the correct<br />

manner?<br />

- Are all changes documented promptly and agreed among all the system<br />

administrators?<br />

- Are all changes made to the operating system configuration documented<br />

and easy to follow after a new installation?<br />

____________________________________________________________________ .........................................<br />

<strong>IT</strong>-<strong>Baseline</strong> <strong>Protection</strong> <strong>Manual</strong>: Oktober 2000

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!