GEN005440 - The system must not be used as a syslog server (loghost) for systems external to the enclave.

Information

Syslog messages are typically unencrypted and may contain sensitive information and are, therefore, restricted to the enclave.
NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Configure the hosts outside of the local enclave to not log to this system.

See Also

http://iasecontent.disa.mil/stigs/zip/U_STIG_Library_2015_07.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b., CAT|II, CCI|CCI-000366, Rule-ID|SV-39205r1_rule, STIG-ID|GEN005440, Vuln-ID|V-12020

Plugin: Unix

Control ID: 645bd8bcc1943e3e68b0a86a9683772a7931b501f6142f04929172fc8e18bcd4