Hi all,
i'm working on the CIS benchmarks for Monterey and i'm stuck at these points :
Ensure Security Auditing Flags For User-Attributable Events Are Configured Per Local Organizational Requirements (Automated)
Ensure install.log Is Retained for 365 or More Days and No Maximum Size (Automated)
Ensure Security Auditing Retention Is Enabled (Automated)
Ensure Access to Audit Records Is Controlled (Automated)
Ensure Sealed System Volume (SSV) Is Enabled (Automated)
Ensure Appropriate Permissions Are Enabled for System Wide Applications (Automated)
Ensure the Sudo Timeout Period Is Set to Zero (Automated)
Ensure a Separate Timestamp Is Enabled for Each User/tty Combo (Automated)
Ensure the "root" Account Is Disabled (Automated)
Alert when the log capacity is over 75%
Alert user & admin about audit logging failures
Dedicated user to decrypt the hard disk upon startup
Shut down the system if audit logging stopped
Anybody can help out and share their solution?