STIGQter STIGQter: STIG Summary: Central Log Server Security Requirements Guide Version: 3 Release: 4 Benchmark Date: 01 Apr 2026:

The Central Log Server must implement the capability for organization-defined individuals or roles to change the auditing to be performed on organization-defined system components based on organization-defined selectable event criteria within organization-defined time thresholds.

DISA Rule

SV-263569r982425_rule

Vulnerability Number

V-263569

Group Title

SRG-APP-000800

Rule Version

SRG-APP-000800-AU-000230

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Central Log Server to implement the capability for organization-defined individuals or roles to change the auditing to be performed on organization-defined system components based on organization-defined selectable event criteria within organization-defined time thresholds.

Check Contents

Verify the Central Log Server is configured to implement the capability for organization-defined individuals or roles to change the auditing to be performed on organization-defined system components based on organization-defined selectable event criteria within organization-defined time thresholds.

If the Central Log Server is not configured to implement the capability for organization-defined individuals or roles to change the auditing to be performed on organization-defined system components based on organization-defined selectable event criteria within organization-defined time thresholds, this is a finding.

Vulnerability Number

V-263569

Documentable

False

Rule Version

SRG-APP-000800-AU-000230

Severity Override Guidance

Verify the Central Log Server is configured to implement the capability for organization-defined individuals or roles to change the auditing to be performed on organization-defined system components based on organization-defined selectable event criteria within organization-defined time thresholds.

If the Central Log Server is not configured to implement the capability for organization-defined individuals or roles to change the auditing to be performed on organization-defined system components based on organization-defined selectable event criteria within organization-defined time thresholds, this is a finding.

Check Content Reference

M

Target Key

2901