Skip to main content
CUI

Documentation - V-206449

V-206449

Central Log Server Security Requirements Guide

CAT III

Title

The Central Log Server must be configured to aggregate log records from organization-defined devices and hosts within its scope of coverage.

Description

<VulnDiscussion>If the application is not configured to collate records based on the time when the events occurred, the ability to perform forensic analysis and investigations across multiple components is significantly degraded. Centralized log aggregation must also include logs from databases and servers (e.g., Windows) that do not natively send logs using the syslog protocol.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><M...

Fix Text (Documentation Requirement)

For each log server, configure the server to aggregate log records from organization-defined devices and hosts within its scope of coverage.

Documentation Status

Cancel
CUI