UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

Audit data must be reviewed on a regular basis.


Overview

Finding ID Version Rule ID IA Controls Severity
V-36670 WN12-AU-000200 SV-51561r1_rule ECAT-1 ECAT-2 Medium
Description
To be of value, audit logs from critical systems must be reviewed on a regular basis. Critical systems should be reviewed on a daily basis to identify security breaches and potential weaknesses in the security structure. This can be done with the use of monitoring software or other utilities for this purpose.
STIG Date
Windows Server 2012 / 2012 R2 Domain Controller Security Technical Implementation Guide 2016-06-08

Details

Check Text ( C-46830r2_chk )
Determine whether audit logs are reviewed on a predetermined schedule. If audit logs are not reviewed on a regular basis, this is a finding.
Fix Text (F-44692r2_fix)
Review audit logs on a predetermined scheduled.