UCF STIG Viewer Logo

The Mainframe Product must provide an audit reduction capability that supports on-demand reporting requirements.


Overview

Finding ID Version Rule ID IA Controls Severity
V-68275 SRG-APP-000181-MFP-000161 SV-82765r1_rule Medium
Description
The ability to generate on-demand reports, including after the audit data has been subjected to audit reduction, greatly facilitates the organization's ability to generate incident reports as needed to better handle larger-scale or more complex security incidents. Audit reduction is a process that manipulates collected audit information and organizes such information in a summary format that is more meaningful to analysts. The report generation capability provided by the application must support on-demand (i.e., customizable, ad-hoc, and as-needed) reports. This requirement is specific to applications with audit reduction capabilities; however, applications need to support on-demand audit review and analysis.
STIG Date
Mainframe Product Security Requirements Guide 2019-12-12

Details

Check Text ( C-68835r1_chk )
If the Mainframe Product does not perform audit data management or storage functions, this is not applicable.

Examine installation and configuration settings.

Verify the Mainframe Product audit reduction capability supports on-demand reporting.

If it does not, this is a finding.
Fix Text (F-74389r1_fix)
Configure the Mainframe Product audit reduction capability to support on-demand reporting.