Free DISA STIG and SRG Library | Vaulted
Removed

V-100055

The Central Log Server must generate audit records containing information that establishes the identity of any individual or process associated with the event.

Finding ID
SRG-APP-000100-AU-000730
Rule ID
SV-109159r1_rule
Severity
Cat III
CCE
(None)
Group Title
SRG-APP-000100-AU-000730
CCI
CCI-001487
Target Key
(None)
Documentable
No
Discussion

Without information that establishes the identity of the subjects (i.e., users or processes acting on behalf of users) associated with the events, security personnel cannot determine responsibility for the potentially harmful event. Event identifiers (if authenticated or otherwise known) include, but are not limited to, user database tables, primary key values, user names, or process identifiers.

Fix Text

Configure the Central Log Server to produce audit records containing information to establish the identity of the individual or process associated with the event.

Check Content

The Central Log Server must generate audit records containing information that establishes the identity of any individual or process associated with the event.