STIGQter STIGQter: STIG Summary: MarkLogic Server v9 Security Technical Implementation Guide Version: 3 Release: 2 Benchmark Date: 24 Oct 2024:

MarkLogic Server must allocate audit record storage capacity in accordance with organization-defined audit record storage requirements.

DISA Rule

SV-220380r961392_rule

Vulnerability Number

V-220380

Group Title

SRG-APP-000357-DB-000316

Rule Version

ML09-00-007200

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

All MarkLogic logs, including audits, are stored within the Data directory (i.e., /var/opt/MarkLogic/Logs).

MarkLogic requires the lesser of 2x the content forest size, or 96GB of free space.

System Administrators must ensure/configure between 1.5 and 3x free disk space for normal operations.

Check Contents

Investigate whether there have been any incidents where the MarkLogic server ran out of audit log space since the last time the space was allocated or other corrective measures were taken.

If there have been, this is a finding.

Vulnerability Number

V-220380

Documentable

False

Rule Version

ML09-00-007200

Severity Override Guidance

Investigate whether there have been any incidents where the MarkLogic server ran out of audit log space since the last time the space was allocated or other corrective measures were taken.

If there have been, this is a finding.

Check Content Reference

M

Target Key

4064