Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

CIS Ubuntu Linux 14.04 LTS Benchmark v2.0.0.1 - Level 1

Center for Internet Security | 2.0.0

Linux/Unix, Ubuntu 8 x 64 - 64-bit Amazon Machine Image (AMI)

Reviews from AWS Marketplace

4 AWS reviews

2-star reviews ( Show all reviews )

    Conor

Default configuration fails to log SSH sessions

  • June 02, 2016
  • Review verified by AWS Marketplace

By default, the /var/log/auth.log file is set to be owned by root. This prevents syslog from writing SSH session information to the file and important security information is lost. A plain vanilla Ubuntu 14.04 image sets the /var/log/auth.log file to be owned by the syslog user and that correctly logs SSH sessions out of the box. On this CIS AMI, once you change the owner of /var/log/auth.log back to the syslog user, then it starts logging as expected.

This is a very basic and critical bug for CIS to miss in their testing.


    Jeff Chen

The image type is limited

  • October 12, 2015
  • Review verified by AWS Marketplace

The options of t1 and t2 image types are not available during the instance creation even though they are listed in the product preview page. The smallest image type is m2.


showing 1 - 2