STIGQter STIGQter: STIG Summary: Central Log Server Security Requirements Guide Version: 1 Release: 4 Benchmark Date: 24 Jul 2020:

The Central Log Server must be configured to generate reports that support after-the-fact investigations of security incidents.

DISA Rule

SV-95879r1_rule

Vulnerability Number

V-81165

Group Title

SRG-APP-000368-AU-000240

Rule Version

SRG-APP-000368-AU-000240

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Configure the Central Log Server to generate reports that support after-the-fact investigations of security incidents.

Check Contents

Examine the configuration.

Verify the Central Log Server generates reports that support after-the-fact investigations of security incidents.

If the Central Log Server is not configured to generate reports that support after-the-fact investigations of security incidents, this is a finding.

Vulnerability Number

V-81165

Documentable

False

Rule Version

SRG-APP-000368-AU-000240

Severity Override Guidance

Examine the configuration.

Verify the Central Log Server generates reports that support after-the-fact investigations of security incidents.

If the Central Log Server is not configured to generate reports that support after-the-fact investigations of security incidents, this is a finding.

Check Content Reference

M

Target Key

3395

Comments