2.2.5 Set 'logging trap informational'

Information

Limit messages logged to the syslog servers based on severity level informational.

Rationale:

This determines the severity of messages that will generate simple network management protocol (SNMP) trap and or syslog messages. This setting should be set to either 'debugging' (7) or 'informational' (6), but no lower.

Impact:

Logging is an important process for an organization managing technology risk. The 'logging trap' command sets the severity of messages and enforces the logging process.

Solution

Configure SNMP trap and syslog logging level.

hostname(config)#logging trap informational

Default Value:

Disabled

See Also

https://workbench.cisecurity.org/files/3829

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-2, 800-53|AU-7, 800-53|AU-12, CSCv7|6.3

Plugin: Cisco

Control ID: 104503199dd42bdd5632c0b29c98b1ff9630468f5a012d1589639987ae52f6c5