SV-229023r518247_rule
V-229023
SRG-APP-000516-NDM-000317
JUSX-DM-000061
CAT II
10
The following example commands configure local backup files to capture DoD-defined auditable events.
[edit]
set system syslog file messages any info
set system syslog file messages authorization none
set system syslog file messages interactive-commands none
set system syslog file messages daemon none
set system syslog file User-Auth authorization any
set system syslog file interactive-commands interactive-commands any
set system syslog file processes daemon any
set system syslog file account-actions change-log any any
set file account-actions match “system login user�
set system syslog console any any
Verify logging has been enabled and configured to capture to local log files in case connection with the primary and secondary log servers is lost.
[edit]
show system syslog
If local log files are not configured to capture events, this is a finding.
V-229023
False
JUSX-DM-000061
Verify logging has been enabled and configured to capture to local log files in case connection with the primary and secondary log servers is lost.
[edit]
show system syslog
If local log files are not configured to capture events, this is a finding.
M
4098