UCF STIG Viewer Logo

The application must enforce configurable traffic volume thresholds representing auditing capacity for network traffic.


Overview

Finding ID Version Rule ID IA Controls Severity
V-35572 SRG-APP-000105-AS-NA SV-46859r1_rule Medium
Description
It is critical that, when a system is at risk of failing to process audit logs as required, actions are automatically taken to mitigate the failure. Audit processing failures include software/hardware errors, failures in the audit capturing mechanisms, and audit storage capacity being reached or exceeded. AS functionality is designed for application hosting and does not include threshold management of auditing-related traffic. This requirement is better met by a network traffic QoS solution that can meter and assign priorities to specific types of traffic.
STIG Date
Application Server Security Requirements Guide 2013-01-08

Details

Check Text ( C-43912r1_chk )
This requirement is NA for the AS SRG.
Fix Text (F-40113r1_fix)
The requirement is NA. No fix is required.