SV-251006r1028244_rule
V-251006
SRG-APP-000516-NDM-000350
MOIS-ND-000980
CAT I
10
Configure the Sentry to forward syslog data using the steps below Refer to "Sentry Guide for Core", section "Syslog", page 140.
1. Log in to the Sentry.
2. Navigate to "Settings".
3. Scroll down to "Syslog".
4. If there is no syslog server entry, ADD the server:
a. Add Server IP address.
b. Add Port.
c. Select/add Facility Types and Log Levels.
d. Enable Admin state.
To identify/validate Sentry support for syslog forwarding, follow the navigation steps below.
1. Log in to the Sentry.
2. Navigate to "Settings".
3. Scroll down to "Syslog".
4. Verify that a syslog server has been configured correctly.
a. Verify Server IP address.
b. Verify Port.
c. Verify Facility Types.
d. Verify Admin state is enabled.
If syslog forwarding has not been implemented, this is a finding.
V-251006
False
MOIS-ND-000980
To identify/validate Sentry support for syslog forwarding, follow the navigation steps below.
1. Log in to the Sentry.
2. Navigate to "Settings".
3. Scroll down to "Syslog".
4. Verify that a syslog server has been configured correctly.
a. Verify Server IP address.
b. Verify Port.
c. Verify Facility Types.
d. Verify Admin state is enabled.
If syslog forwarding has not been implemented, this is a finding.
M
5438