SV-95857r1_rule
V-81143
SRG-APP-000356-AU-000090
SRG-APP-000356-AU-000090
CAT III
10
Configure access for management tools used by administrators at management workstations, particularly those used for remote access. This often uses user access profiles or remote access configuration to enable secure and authorized access to the Central Log Server.
Enable management from one or more management workstations or a secure browser.
Verify remote communications from the management station using a secure, approved version of the protocol (e.g., TLS). Limit access based on user role, location, or remote device wherever possible.
Examine the configuration.
Verify that centralized management of the events repository is enabled and configured for all hosts and devices within the scope of coverage.
If the Central Log Server is not enabled to allow centralized management of the events repository for the purposes of configuration, analysis, and reporting, this is a finding.
V-81143
False
SRG-APP-000356-AU-000090
Examine the configuration.
Verify that centralized management of the events repository is enabled and configured for all hosts and devices within the scope of coverage.
If the Central Log Server is not enabled to allow centralized management of the events repository for the purposes of configuration, analysis, and reporting, this is a finding.
M
3395