STIGQter STIGQter: STIG Summary: Network Device Management Security Requirements Guide Version: 5 Release: 5 Benchmark Date: 01 Jul 2026:

The network device must be configured to send log data to at least one central log server for the purpose of forwarding alerts to the administrators and the information system security officer (ISSO). For boundary devices, two log servers are required.

DISA Rule

SV-213467r1137890_rule

Vulnerability Number

V-213467

Group Title

SRG-APP-000516

Rule Version

SRG-APP-000516-NDM-000350

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Configure the network device to send log data to at least one central log server.

Configure the network boundary device to send log data to at least two central log servers.

Check Contents

Verify the network device is configured to send log data to at least one central log server. For boundary devices, verify the network device is configured to send log data to at least two central log servers.

If the network device is not configured to send log data to at least one central log server, this is a finding.

If the network boundary device is not configured to send log data to at least two central log servers, this is a finding.

Vulnerability Number

V-213467

Documentable

False

Rule Version

SRG-APP-000516-NDM-000350

Severity Override Guidance

Verify the network device is configured to send log data to at least one central log server. For boundary devices, verify the network device is configured to send log data to at least two central log servers.

If the network device is not configured to send log data to at least one central log server, this is a finding.

If the network boundary device is not configured to send log data to at least two central log servers, this is a finding.

Check Content Reference

M

Target Key

2890