V-38445: Audit log files must be group-owned by root. ----------------------------------------------------- If non-privileged users can write to audit logs, audit trails can be modified or destroyed. Details: `V-38445 in STIG Viewer`_. .. _V-38445 in STIG Viewer: https://www.stigviewer.com/stig/red_hat_enterprise_linux_6/2015-05-26/finding/V-38445 Notes for deployers ~~~~~~~~~~~~~~~~~~~ .. include:: developer-notes/V-38445.rst