10.17 Do not resolve hosts on logging valves

Information

Setting enableLookups to true on Connector requires a DNS look-up before logging the information. This adds additional resources when logging. Allowing enableLookups adds additional overhead that is rarely needed.

Solution

In Connector elements, set the enableLookups attribute to false or remove it.

See Also

https://workbench.cisecurity.org/files/266

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b.

Plugin: Unix

Control ID: 8e7bd20c88160c938e77d14ff5aa300dc85d42892b2eac821711959e215a7a91