SV-233336r616547_rule
V-233336
SRG-NET-000336-NAC-001390
FORE-NC-000420
CAT II
10
1. Log on to the Forescout UI.
2. Select Tools >> Options >> Syslog >> Syslog Triggers.
3. Check all boxes in the NAC Events section. This includes the "Include NAC policy logs" and the "Include NAC policy match/unmatch events".
Verify the NAC is configured with a secondary log server in case the primary log is unreachable.
1. Log on to the Forescout UI.
2. Select Tools >> Options >>Syslog >>Syslog Triggers.
3. Verify all boxes in the NAC Events section are checked. This includes the "Include NAC policy logs" and the "Include NAC policy match/unmatch events".
If the NAC is not configured with a secondary log server in case the primary log is unreachable, this is a finding.
V-233336
False
FORE-NC-000420
Verify the NAC is configured with a secondary log server in case the primary log is unreachable.
1. Log on to the Forescout UI.
2. Select Tools >> Options >>Syslog >>Syslog Triggers.
3. Verify all boxes in the NAC Events section are checked. This includes the "Include NAC policy logs" and the "Include NAC policy match/unmatch events".
If the NAC is not configured with a secondary log server in case the primary log is unreachable, this is a finding.
M
5250