ISC Exam Questions

Which of the following are security events on Unix that should be logged?

Which of the following are security events on Unix that should be logged?

A.
All of the choices.

B.
Use of Setgid.

C.
Change of permissions on system files.

D.
Use of Setuid.

Explanation:
The following file changes, conditions, and events are logged: rhosts. UNIX Kernel. /etc/password. rc
directory structure. bin files. lib files. Use of Setuid. Use of Setgid. Change of permission on system or
critical files.