1.032 - Audit data must be retained for at least one year.

Information

Audit records are essential for investigating system activity after the fact. Retention periods for audit data are determined based on the sensitivity of the data handled by the system.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Ensure the audit data is retained for at least one year.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Windows_2008_MS_V6R46_STIG.zip

Item Details

References: CAT|II, CCI|CCI-000366, Rule-ID|SV-29752r2_rule, STIG-ID|1.032, Vuln-ID|V-14226

Plugin: Windows

Control ID: 78232ad09ede1c8949913396004d0cbd3a03846716fc2d05edea8daab4aa4f56