SV-222463r508029_rule
V-222463
SRG-APP-000504
APSC-DV-000840
CAT II
10
Configure the application to write a log entry when privileged activities or other system-level events occur.
Review and monitor the application logs.
Authenticate to the application as a privileged user and observe if the log includes an entry to indicate the user’s authentication was successful.
Perform actions as an admin or other privileged user such as modifying the logging verbosity, or starting or stopping an application service, or terminating a test user session.
If log events that correspond with the actions performed are not recorded in the logs, this is a finding.
V-222463
False
APSC-DV-000840
Review and monitor the application logs.
Authenticate to the application as a privileged user and observe if the log includes an entry to indicate the user’s authentication was successful.
Perform actions as an admin or other privileged user such as modifying the logging verbosity, or starting or stopping an application service, or terminating a test user session.
If log events that correspond with the actions performed are not recorded in the logs, this is a finding.
M
4093