STIGQter STIGQter: STIG Summary: Cisco ACI NDM Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 05 Jan 2026:

The Cisco ACI must be configured to send log data to a central log server for log retention and forwarding alerts to the administrators and the information system security officer (ISSO).

DISA Rule

SV-271931r1168368_rule

Vulnerability Number

V-271931

Group Title

SRG-APP-000516-NDM-000350

Rule Version

CACI-ND-000016

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Configure the Cisco switch to send log records to a syslog servers.

Navigate to Admin >> External Data Collectors >> Monitoring Destinations >> Syslog.

Provide the configuration information to create a log server.

Check Contents

Verify the ACI Fabric is configured to send event messages to syslog servers.

Navigate to Admin >> External Data Collectors >> Monitoring Destinations >> Syslog.

If the Cisco ACI is not configured to send audit records to at least one central syslog server, this is a finding.

Vulnerability Number

V-271931

Documentable

False

Rule Version

CACI-ND-000016

Severity Override Guidance

Verify the ACI Fabric is configured to send event messages to syslog servers.

Navigate to Admin >> External Data Collectors >> Monitoring Destinations >> Syslog.

If the Cisco ACI is not configured to send audit records to at least one central syslog server, this is a finding.

Check Content Reference

M

Target Key

5682