STIGQter STIGQter: STIG Summary: Cisco IOS XR Router NDM Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 24 Jan 2020: The Cisco router must alert the ISSO and SA (at a minimum) in the event of an audit processing failure.

DISA Rule

SV-105537r1_rule

Vulnerability Number

V-96399

Group Title

SRG-APP-000108-NDM-000232

Rule Version

CISC-ND-000340

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the router to send log messages to the syslog server as shown in the example below.

RP/0/0/CPU0:R3(config)#logging 10.1.3.22 severity info

Check Contents

The Cisco router is not compliant with this requirement. However, the risk associated with this requirement can be fully mitigated if the router is configured to send logs to a syslog server that can send alerts to the appropriate personnel.

Verify that the router is configured to send logs to a syslog server. The configuration should look similar to the example below:

logging 10.1.3.22 vrf default severity info

If the router is not configured to send log messages to a syslog server, this is a finding.

Vulnerability Number

V-96399

Documentable

False

Rule Version

CISC-ND-000340

Severity Override Guidance

The Cisco router is not compliant with this requirement. However, the risk associated with this requirement can be fully mitigated if the router is configured to send logs to a syslog server that can send alerts to the appropriate personnel.

Verify that the router is configured to send logs to a syslog server. The configuration should look similar to the example below:

logging 10.1.3.22 vrf default severity info

If the router is not configured to send log messages to a syslog server, this is a finding.

Check Content Reference

M

Target Key

3475

Comments