Capacity
CCI-001844
The information system provides centralized management and configuration of the content to be captured in audit records generated by organization-defined information system components.
Choose one
1
Rule
Severity: Medium
An Apache web server that is part of a web server cluster must route all remote management through a centrally managed access control point.
2
Rule
Severity: Medium
The Apache web server must be configured to provide clustering.
1
Rule
Severity: Medium
The ALG must be configured to support centralized management and configuration.
1
Rule
Severity: Medium
The application server must provide centralized management and configuration of the content to be captured in log records generated by all application components.
1
Rule
Severity: Medium
The application must provide centralized management and configuration of the content to be captured in audit records generated by all application components.
1
Rule
Severity: Low
The Central Log Server must be configured for centralized management of the events repository for the purposes of configuration, analysis, and reporting.
1
Rule
Severity: Medium
The DBN-6300 must support centralized management and configuration of the content captured in audit records generated by all DBN-6300 components.
1
Rule
Severity: Medium
Forescout must be configured to log records onto a centralized events server. This is required for compliance with C2C Step 1.
1
Rule
Severity: Medium
The IBM Aspera Platform must be configured to support centralized management and configuration.
1
Rule
Severity: Medium
The DataPower Gateway must be configured to support centralized management and configuration.
1
Rule
Severity: Medium
The MQ Appliance messaging server must provide centralized management and configuration of the content to be captured in log records generated by all application components.
1
Rule
Severity: Medium
DB2 must utilize centralized management of the content captured in audit records generated by all components of DB2.
1
Rule
Severity: Medium
CA VM:Secure product must be installed and operating.
1
Rule
Severity: Medium
IDPS must support centralized management and configuration of the content captured in audit records generated by all IDPS components.
2
Rule
Severity: Medium
The ISEC7 EMM Suite must back up audit records at least every seven days onto a different system or system component than the system or component being audited, provide centralized management and configuration of the content to be captured in audit records generated by all ISEC7 EMM Suite components, and off-load audit records onto a different system or media than the system being audited.
1
Rule
Severity: Medium
The Juniper SRX Services Gateway Firewall must be configured to support centralized management and configuration of the audit log.
1
Rule
Severity: Medium
The Mainframe Product must provide centralized management and configuration of the content to be captured in audit records generated by all application components.
1
Rule
Severity: Medium
Azure SQL Database must utilize centralized management of the content captured in audit records generated by all components of the DBMS.
1
Rule
Severity: Medium
SQL Server must utilize centralized management of the content captured in audit records generated by all components of the DBMS.
1
Rule
Severity: High
Innoslate must use multifactor authentication for network access to privileged and non-privileged accounts.
1
Rule
Severity: Medium
TPS must support centralized management and configuration of the content captured in audit records generated by all TPS components by using the Security Management System (SMS).
1
Rule
Severity: Medium
The NSX-T Distributed Firewall must be configured to send traffic log entries to a central audit server for management and configuration of the traffic log entries.
1
Rule
Severity: Medium
The NSX-T Tier-1 Gateway Firewall must be configured to send traffic log entries to a central audit server for management and configuration of the traffic log entries.
1
Rule
Severity: Medium
The NSX-T Tier-0 Gateway Firewall must be configured to use the TLS or LI-TLS protocols to configure and secure communications with the central audit server.
1
Rule
Severity: Medium
The VPN Gateway must provide centralized management and configuration of the content to be captured in log records generated by all network components.
2
Rule
Severity: Medium
PostgreSQL must utilize centralized management of the content captured in audit records generated by all components of PostgreSQL.
1
Rule
Severity: Medium
The Cisco ISE must audit the enforcement actions used to restrict access associated with changes to the device.
1
Rule
Severity: Medium
The Cisco ISE must be configured to log records onto a centralized events server. This is This is required for compliance with C2C Step 1.
2
Rule
Severity: Medium
The EDB Postgres Advanced Server must utilize centralized management of the content captured in audit records generated by all components of the EDB Postgres Advanced Server.
2
Rule
Severity: Medium
The EDB Postgres Advanced Server must provide centralized configuration of the content to be captured in audit records generated by all components of the EDB Postgres Advanced Server.
1
Rule
Severity: Medium
The DBMS must utilize centralized management of the content captured in audit records generated by all components of the DBMS.
1
Rule
Severity: Medium
The DBMS must provide centralized configuration of the content to be captured in audit records generated by all components of the DBMS.
1
Rule
Severity: Medium
Kubernetes API Server must generate audit records that identify what type of event has occurred, identify the source of the event, contain the event results, identify any users, and identify any containers associated with the event.
1
Rule
Severity: Low
MarkLogic Server must utilize centralized management of the content captured in audit records generated by all components of the DBMS.
1
Rule
Severity: Medium
MariaDB must utilize centralized management of the content captured in audit records generated by all components of the DBMS.
1
Rule
Severity: Medium
MariaDB must provide centralized configuration of the content to be captured in audit records generated by all components of the DBMS.
2
Rule
Severity: Medium
MongoDB must provide audit record generation for DoD-defined auditable events within all DBMS/database components.
2
Rule
Severity: Medium
MongoDB must utilize centralized management of the content captured in audit records generated by all components of MongoDB.
1
Rule
Severity: Medium
SQL Server must utilize centralized management of the content captured in audit records generated by all components of SQL Server.
1
Rule
Severity: Medium
SQL Server must provide centralized configuration of the content to be captured in audit records generated by all components of SQL Server.
1
Rule
Severity: Medium
The MySQL Database Server 8.0 must utilize centralized management of the content captured in audit records generated by all components of the MySQL Database Server 8.0.
1
Rule
Severity: Medium
The MySQL Database Server 8.0 must provide centralized configuration of the content to be captured in audit records generated by all components of the MySQL Database Server 8.0.
1
Rule
Severity: Medium
Redis Enterprise DBMS must use centralized management of the content captured in audit records generated by all components of Redis Enterprise DBMS.
1
Rule
Severity: Medium
Redis Enterprise DBMS must provide centralized configuration of the content to be captured in audit records generated by all components of Redis Enterprise DBMS.
1
Rule
Severity: Medium
VMware Postgres must have log collection enabled.
2
Rule
Severity: Medium
The vCenter PostgreSQL service must have log collection enabled.
1
Rule
Severity: Medium
A web server that is part of a web server cluster must route all remote management through a centrally managed access control point.
1
Rule
Severity: Medium
PostgreSQL must use centralized management of the content captured in audit records generated by all components of PostgreSQL.
1
Rule
Severity: Medium
The Enterprise Voice, Video, and Messaging Session Manager must be configured to provide centralized management of session (call) records.
1
Rule
Severity: Medium
MongoDB must provide audit record generation for DOD-defined auditable events within all DBMS/database components.
Patternfly
PatternFly elements
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.
Modules
66%