STIGQter STIGQter: STIG Summary: Central Log Server Security Requirements Guide Version: 3 Release: 4 Benchmark Date: 01 Apr 2026:

The Central Log Server must for password-based authentication, require immediate selection of a new password upon account recovery.

DISA Rule

SV-263578r982439_rule

Vulnerability Number

V-263578

Group Title

SRG-APP-000855

Rule Version

SRG-APP-000855-AU-000340

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Central Log Server to require immediate selection of a new password upon account recovery.

Check Contents

Verify the Central Log Server is configured to require immediate selection of a new password upon account recovery.

If the Central Log Server is not configured to require immediate selection of a new password upon account recovery, this is a finding.

Vulnerability Number

V-263578

Documentable

False

Rule Version

SRG-APP-000855-AU-000340

Severity Override Guidance

Verify the Central Log Server is configured to require immediate selection of a new password upon account recovery.

If the Central Log Server is not configured to require immediate selection of a new password upon account recovery, this is a finding.

Check Content Reference

M

Target Key

2901