UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

The operating system must support an audit reduction capability.


Overview

Finding ID Version Rule ID IA Controls Severity
SRG-OS-000052-ESXI5-PNF SRG-OS-000052-ESXI5-PNF SRG-OS-000052-ESXI5-PNF_rule Medium
Description
Audit reduction is used to reduce the volume of audit records in order to facilitate manual review. Before a security review information systems and/or applications with an audit reduction capability may remove many audit records known to have little security significance. An audit reduction capability provides support for near real-time audit review and analysis requirements and after-the-fact investigations of security incidents. The operating system must integrate into the information system or organizational audit reduction capability. Permanent not a finding - Auditing cannot be configured/implemented like a typical UNIX system. Due to remote logging, audit records are stored off-system (where audit logs and analysis tools, such as audit log reduction are kept).
STIG Date
VMware ESXi v5 Security Technical Implementation Guide 2013-01-15

Details

Check Text ( C-SRG-OS-000052-ESXI5-PNF_chk )
ESXi supports this requirement and cannot be configured to be out of compliance. This is a permanent not a finding.
Fix Text (F-SRG-OS-000052-ESXI5-PNF_fix)
This requirement is permanent not a finding. No fix is required.