SV-80369r1_rule
V-65879
SRG-APP-000091
TMDS-00-000070
CAT II
10
Configure the Trend Deep Security server to generate audit records when successful/unsuccessful attempts to access privileges occur.
Go to Administration >> System Settings >> System Events, and set the following settings to “Record.”
660 Role Created
661 Role Deleted
662 Role Updated
663 Roles Imported
664 Roles Exported
Review the Trend Deep Security server configuration to ensure only the ISSM (or individuals or roles appointed by the ISSM) is allowed to select which auditable events are to be audited.
Verify the following events within the Administration >> System Settings >> System Events, are set to “Record.”
660 Role Created
661 Role Deleted
662 Role Updated
663 Roles Imported
664 Roles Exported
If these settings are not set to “Record”, this is a finding.
V-65879
False
TMDS-00-000070
Review the Trend Deep Security server configuration to ensure only the ISSM (or individuals or roles appointed by the ISSM) is allowed to select which auditable events are to be audited.
Verify the following events within the Administration >> System Settings >> System Events, are set to “Record.”
660 Role Created
661 Role Deleted
662 Role Updated
663 Roles Imported
664 Roles Exported
If these settings are not set to “Record”, this is a finding.
M
2955