Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-36672 | WN12-AU-000203-01 | SV-51566r2_rule | ECRR-1 | Medium |
Description |
---|
Protection of log data includes assuring the log data is not accidentally lost or deleted. Audit information stored in one location is vulnerable to accidental or incidental deletion or alteration. |
STIG | Date |
---|---|
Windows Server 2012 / 2012 R2 Domain Controller Security Technical Implementation Guide | 2015-09-02 |
Check Text ( C-58509r2_chk ) |
---|
Determine if a process to back up log data to a different system or media than the system being audited has been implemented. If it has not, this is a finding. |
Fix Text (F-62923r1_fix) |
---|
Establish and implement a process for backing up log data to another system or media other than the system being audited. |