STIGQter STIGQter: STIG Summary: Cisco IOS XR Router NDM Security Technical Implementation Guide Version: 3 Release: 6 Benchmark Date: 01 Apr 2026:

The Cisco router must be configured to send log data to at least two syslog servers for the purpose of forwarding alerts to the administrators and the information system security officer (ISSO).

DISA Rule

SV-216547r961863_rule

Vulnerability Number

V-216547

Group Title

SRG-APP-000516-NDM-000317

Rule Version

CISC-ND-001450

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Configure the router to send log messages to the syslog servers as shown in the example below.

RP/0/0/CPU0:R3(config)#logging 10.1.3.22 severity info
RP/0/0/CPU0:R3(config)#logging 10.1.3.23 severity info

Check Contents

Verify that the router is configured to send logs to at least two syslog servers. The configuration should look similar to the example below:

logging 10.1.3.22 vrf default severity info
logging 10.1.3.23 vrf default severity info

If the router is not configured to send log data to the syslog server, this is a finding.

Vulnerability Number

V-216547

Documentable

False

Rule Version

CISC-ND-001450

Severity Override Guidance

Verify that the router is configured to send logs to at least two syslog servers. The configuration should look similar to the example below:

logging 10.1.3.22 vrf default severity info
logging 10.1.3.23 vrf default severity info

If the router is not configured to send log data to the syslog server, this is a finding.

Check Content Reference

M

Target Key

4023