Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-35216 | SRG-APP-000125-AS-000084 | SV-46503r3_rule | Medium |
Description |
---|
Protection of log data includes assuring log data is not accidentally lost or deleted. Backing up log records to a different system or onto separate media from the system the application server is actually running on helps to assure that in the event of a catastrophic system failure, the log records will be retained. |
STIG | Date |
---|---|
Application Server Security Requirements Guide | 2018-09-13 |
Check Text ( C-43588r2_chk ) |
---|
Review the application server configuration to determine if the application server backs up log records every seven days onto a different system or media from the system being logged. If the application server does not back up log records every seven days onto a different system or media from the system being logged, this is a finding. |
Fix Text (F-39762r2_fix) |
---|
Configure the application server to back up log records every seven days onto a different system or media from the system being logged. |