STIGQter STIGQter: STIG Summary: Central Log Server Security Requirements Guide Version: 1 Release: 4 Benchmark Date: 24 Jul 2020:

The Central Log Server must be configured to perform on-demand searches of log records for events of interest based on the content of organization-defined audit fields within log records.

DISA Rule

SV-95869r1_rule

Vulnerability Number

V-81155

Group Title

SRG-APP-000363-AU-000180

Rule Version

SRG-APP-000363-AU-000180

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Configure the Central Log Server to perform on-demand searches of log records for events of interest based on the content of organization-defined audit fields within log records.

Check Contents

Examine the configuration.

Verify the Central Log Server performs on-demand searches of log records for events of interest based on the content of organization-defined audit fields within log records.

If the Central Log Server is not configured to perform on-demand searches of log records for events of interest based on the content of organization-defined audit fields within log records, this is a finding.

Vulnerability Number

V-81155

Documentable

False

Rule Version

SRG-APP-000363-AU-000180

Severity Override Guidance

Examine the configuration.

Verify the Central Log Server performs on-demand searches of log records for events of interest based on the content of organization-defined audit fields within log records.

If the Central Log Server is not configured to perform on-demand searches of log records for events of interest based on the content of organization-defined audit fields within log records, this is a finding.

Check Content Reference

M

Target Key

3395

Comments