10.16 Do not resolve hosts on logging valves

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Setting enableLookups to true on Connector requires a DNS look-up before logging the information. This adds additional resources when logging. Allowing enableLookups adds additional overhead that is rarely needed.

Solution

In Connector elements, set the enableLookups attribute to false or remove it.

See Also

https://workbench.cisecurity.org/files/267

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7

Plugin: Unix

Control ID: cab26169be25bb64aba25ce9b6d410b4815eb195d752dd4fdff1a6234b559103