STIGQter STIGQter: STIG Summary: Central Log Server Security Requirements Guide Version: 3 Release: 4 Benchmark Date: 01 Apr 2026:

The Central Log Server must be configured with the organization-defined severity or criticality levels of each event that is being sent from individual devices or hosts.

DISA Rule

SV-206517r961863_rule

Vulnerability Number

V-206517

Group Title

SRG-APP-000516

Rule Version

SRG-APP-000516-AU-000380

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Central Log Server with the organization-defined severity or criticality levels of each event that is being sent from individual devices or hosts.

Check Contents

Obtain the site’s SSP to see which criticality levels are used for each system within the scope of the Central Log Server. Examine the configuration of the Central Log Server.

Verify the Central Log Server is configured with the organization-defined severity or criticality levels of each event that is being sent from individual devices or hosts.

If the Central Log Server is not configured with the organization-defined severity or criticality levels of each event that is being sent from individual devices or hosts, this is a finding.

Vulnerability Number

V-206517

Documentable

False

Rule Version

SRG-APP-000516-AU-000380

Severity Override Guidance

Obtain the site’s SSP to see which criticality levels are used for each system within the scope of the Central Log Server. Examine the configuration of the Central Log Server.

Verify the Central Log Server is configured with the organization-defined severity or criticality levels of each event that is being sent from individual devices or hosts.

If the Central Log Server is not configured with the organization-defined severity or criticality levels of each event that is being sent from individual devices or hosts, this is a finding.

Check Content Reference

M

Target Key

2901