2.2.7 Set 'logging source interface'

Information

Specify the source IPv4 or IPv6 address of system logging packets

Rationale:

This is required so that the router sends log messages to the logging server from a consistent IP address.

Impact:

Logging is an important process for an organization managing technology risk and establishing a consistent source of messages for the logging host is critical. The 'logging source interface loopback' command sets a consistent IP address to send messages to the logging host and enforces the logging process.

Solution

Bind logging to the loopback interface.

hostname(config)#logging source-interface loopback {<em>loopback_interface_number</em>}

Default Value:

The wildcard interface address is used.

See Also

https://workbench.cisecurity.org/files/3829

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-2, 800-53|AU-7, 800-53|AU-12, CSCv7|6.3

Plugin: Cisco

Control ID: 7eb2b67cc8f2d5985b9a0fb667e8c5965107a4f01d5481d1cd9e378d35e4b9a8