I'm going over past exam papers for a security module I'm taking at university and there is a question which I can't give a great answer for.
As a security manager in a bank you are asked to implemented an "append-only" log system in Unix for all transactions in your bank. Give five security issues you are going to address and discuss a proper countermeasure for each.
To make it more in the spirit of this site... What security issues are there when it comes to implementing append-only log files in Unix and what would countermeasures to those issues be?