STIGQter STIGQter: STIG Summary: JBoss Enterprise Application Platform 6.3 Security Technical Implementation Guide Version: 2 Release: 1 Benchmark Date: 22 Jan 2021:

JBoss log records must be off-loaded onto a different system or system component a minimum of every seven days.

DISA Rule

SV-213516r615939_rule

Vulnerability Number

V-213516

Group Title

SRG-APP-000125-AS-000084

Rule Version

JBOS-AS-000195

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the application server to off-load log records every seven days onto a different system or media from the system being logged.

Check Contents

Interview the system admin and obtain details on how the log files are being off-loaded to a different system or media.

If the log files are not off-loaded a minimum of every 7 days, this is a finding.

Vulnerability Number

V-213516

Documentable

False

Rule Version

JBOS-AS-000195

Severity Override Guidance

Interview the system admin and obtain details on how the log files are being off-loaded to a different system or media.

If the log files are not off-loaded a minimum of every 7 days, this is a finding.

Check Content Reference

M

Target Key

3987

Comments