1.10.3 Ensure 'syslog hosts' is configured correctly

Information

Sets the SNMP notification recipient or the NMS or SNMP manager that can connect to the ASA.

Rationale:

Syslog messages are an invaluable tool for accounting, monitoring, and routine troubleshooting. Logging to a central syslog server is a method of collecting messages from devices to a server running a syslog daemon. This helps in aggregation of logs and alerts. This form of logging provides protected long-term storage for logs, since are also useful in incident handling.

Solution

Run the following to configure the Syslog server

hostname(config)# logging host <interface_name> <host_ip_address>

Default Value:

The syslog server is not configured by default.

See Also

https://workbench.cisecurity.org/benchmarks/7194

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-2, 800-53|AU-7, 800-53|AU-12, CSCv7|11.1

Plugin: Cisco

Control ID: a3989b126d8733abc4c8c2062ac48e099daf786d4170f2a44c0efbcd45ed5819