SV-104421r2_rule
V-94591
SRG-APP-000516-NDM-000342
SELS-ND-001400
CAT II
10
To configure the SEL-2740S to send logs to Syslog servers do the following:
1. Login with Permission Level 3 right into parent OTSDN Controller.
2. Go to the Configuration Objects settings page and select the desired switch.
3. Insert the Syslog log service and configure the settings with the desired IP addresses into the syslog settings fields.
4. Create the flow rules necessary for syslog.
Verify that the switch is configured to use a syslog server for the purpose of forwarding alerts to the administrators and the ISSO.
1. Login with Permission Level 3 into the OTSDN Controller.
2. Go to the Configuration Object page and select the subject switch node.
3. Check the log services settings and confirm hat a syslog server IP address is in the settings fields.
If the SEL-2740S is not configured to use a syslog server, this is a finding.
V-94591
False
SELS-ND-001400
Verify that the switch is configured to use a syslog server for the purpose of forwarding alerts to the administrators and the ISSO.
1. Login with Permission Level 3 into the OTSDN Controller.
2. Go to the Configuration Object page and select the subject switch node.
3. Check the log services settings and confirm hat a syslog server IP address is in the settings fields.
If the SEL-2740S is not configured to use a syslog server, this is a finding.
M
3383