Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
SRG-NET-999999-FW-000195 | SRG-NET-999999-FW-000195 | SRG-NET-999999-FW-000195_rule | Low |
Description |
---|
The firewall implementation must allocate enough storage capacity to contain log records. If the log storage capacity is exceeded, the firewall may malfunction or shutdown. The site would lose valuable data needed for investigating security incidents. |
STIG | Date |
---|---|
Firewall Security Requirements Guide | 2012-12-10 |
Check Text ( C-SRG-NET-999999-FW-000195_chk ) |
---|
Examine the firewall application log configuration. Verify a dedicated amount of space has been allocated for the events log and this space is not usable by other applications or processes. If the firewall implementation is not configured to allocate sensor events log record storage capacity, this is a finding. |
Fix Text (F-SRG-NET-999999-FW-000195_fix) |
---|
Configure the firewall implementation to allocated space that is dedicated to application log record storage. |