SV-74353r1_rule
V-59923
SRG-NET-000074-ALG-000043
F5BI-AF-000039
CAT II
10
Configure the BIG-IP AFM module to produce audit records containing information to establish what type of events occurred.
Navigate to the BIG-IP System manager >> Security >> Event Logs >> Logging Profiles.
Click on 'Create'.
Name the Profile.
Check the box next to 'Network Firewall'.
Configure settings to log required information.
Click 'Finished'.
Verify the BIG-IP AFM module is configured to produce audit records containing information to establish what type of events occurred.
Navigate to the BIG-IP System manager >> Security >> Event Logs >> Logging Profiles.
Verify list of Profiles 'Enabled' for 'Network Firewall'.
If the BIG-IP AFM module does not produce audit records containing information to establish what type of events occurred, this is a finding.
V-59923
False
F5BI-AF-000039
Verify the BIG-IP AFM module is configured to produce audit records containing information to establish what type of events occurred.
Navigate to the BIG-IP System manager >> Security >> Event Logs >> Logging Profiles.
Verify list of Profiles 'Enabled' for 'Network Firewall'.
If the BIG-IP AFM module does not produce audit records containing information to establish what type of events occurred, this is a finding.
M
2839