The HYCU virtual appliance must generate an immediate real-time alert of all audit failure events requiring real-time alerts.
An XCCDF Rule
Description
It is critical for the appropriate personnel to be aware if a system is at risk of failing to process audit logs as required. Without a real-time alert, security personnel may be unaware of an impending failure of the audit capability and system operation may be adversely affected. Satisfies: SRG-APP-000360-NDM-000295, SRG-APP-000795-NDM-000130
- ID
- SV-268254r1038704_rule
- Version
- HYCU-ND-000430
- Severity
- Medium
- References
- Updated
Remediation Templates
A Manual Procedure
Log in to the HYCU Web UI and go to the "Events" menu and open "Email Notifications".
Ensure that all the appropriate/relevant categories are selected and that the "Status" includes failures.
Add a "Subject" for the "Email Notifications" and email address for necessary auditors or HYCU administrators.