UCF STIG Viewer Logo

The IAO will ensure application audit trails are retained for at least 1 year for applications without SAMI data, and 5 years for applications including SAMI data.


Overview

Finding ID Version Rule ID IA Controls Severity
V-6173 APP6140 SV-6173r1_rule ECRR-1 Medium
Description
Log files are a requirement to trace intruder activity or to audit user activity.
STIG Date
Application Security and Development Checklist 2014-12-22

Details

Check Text ( C-3059r1_chk )
Ensure a process is in place to retain application audit log files for one year and five years for SAMI data.


1) If audit logs have not been retained for one year or five years for SAMI data, this is a finding.
Fix Text (F-4485r1_fix)
Retain application audit log files for one year and five years for SAMI data.