SV-86149r1_rule
V-71525
SRG-APP-000125-NDM-000241
CAGW-DM-000130
CAT III
10
Configure the CA API Gateway to forward all audit log messages to the central log server.
- Log in to CA API Gateway as root.
- Open "/etc/rsyslog.conf" for editing.
- Add a rule "*.* @@loghost.log.com" to the ruleset section of the "rsyslogd.conf" file.
Verify the CA API Gateway forwards all log audit log messages to the central log server.
Within the "/etc/rsyslog.conf" file, confirm a rule in the format "*.* @@loghost.log.com" is in the ruleset section.
If the CA API Gateway "/etc/rsyslog.conf" file does not have a rule in the format "*.* @@loghost.log.com" in the ruleset section, this is a finding.
V-71525
False
CAGW-DM-000130
Verify the CA API Gateway forwards all log audit log messages to the central log server.
Within the "/etc/rsyslog.conf" file, confirm a rule in the format "*.* @@loghost.log.com" is in the ruleset section.
If the CA API Gateway "/etc/rsyslog.conf" file does not have a rule in the format "*.* @@loghost.log.com" in the ruleset section, this is a finding.
M
3051