STIGQter STIGQter: STIG Summary: Central Log Server Security Requirements Guide Version: 3 Release: 4 Benchmark Date: 01 Apr 2026:

The Central Log Server must for password-based authentication, maintain a list of commonly used, expected, or compromised passwords on an organization-defined frequency.

DISA Rule

SV-263574r981807_rule

Vulnerability Number

V-263574

Group Title

SRG-APP-000830

Rule Version

SRG-APP-000830-AU-000290

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Central Log Server to maintain a list of commonly used, expected, or compromised passwords on an organization-defined frequency.

Check Contents

Verify the Central Log Server is configured to maintain a list of commonly used, expected, or compromised passwords on an organization-defined frequency.

If the Central Log Server is not configured to maintain a list of commonly used, expected, or compromised passwords on an organization-defined frequency, this is a finding.

Vulnerability Number

V-263574

Documentable

False

Rule Version

SRG-APP-000830-AU-000290

Severity Override Guidance

Verify the Central Log Server is configured to maintain a list of commonly used, expected, or compromised passwords on an organization-defined frequency.

If the Central Log Server is not configured to maintain a list of commonly used, expected, or compromised passwords on an organization-defined frequency, this is a finding.

Check Content Reference

M

Target Key

2901