SV-220483r604141_rule
V-220483
SRG-APP-000091-NDM-000223
CISC-ND-000250
CAT II
10
Configure the Cisco switch to log all logon attempts as shown in the example below:
Step 1: Lower the authpriv level to 6.
SW1(config)# logging level authpriv 6
Step 2: Configure a logfile to record log messages at level 6.
SW1(config)# logging logfile LOG_FILE 6
Review the Cisco switch configuration to verify that it is compliant with this requirement. The configuration example below will log all logon attempts.
logging logfile LOG_FILE 6
logging level authpri 6
If the Cisco switch is not configured to generate audit records when successful/unsuccessful attempts to logon, this is a finding.
V-220483
False
CISC-ND-000250
Review the Cisco switch configuration to verify that it is compliant with this requirement. The configuration example below will log all logon attempts.
logging logfile LOG_FILE 6
logging level authpri 6
If the Cisco switch is not configured to generate audit records when successful/unsuccessful attempts to logon, this is a finding.
M
4066