4.3 - HTTP logging parameters are not set - Rotation Time

Information

On each server enable HTTP logging. The HTTP subsystem keeps a log of all HTTP transactions in a text file in either common log format or extended log format. Common log format is the default, and follows a standard convention. Extended log format allows you to customize the information that is recorded. The default location and rotation policy for HTTP access logs is the same as the server log, in the logs directory below the server instance root directory.

Unauthorized intrusions and malicious activities may go undetected.

Solution

1. In the left pane of the Console, expand Environment and select Servers.
2. In the Servers table, click the name of the server instance whose logging you want to configure.
3. Select Logging > HTTP
4. On the HTTP tab, click Enable HTTP access log file enabled
5. Configure the following parameters -
-Set Rotation Type as 'By Time'.
-Set Begin Rotation Time as '00:00'.
-Select Rotation Interval 24
-Select Limit Number of Retained Log Files
-Set Files to Retain as 60
6. Click Apply.
7. Restart the server.

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-11

Plugin: Unix

Control ID: fc4449974006ccdc2f321706a2a35b644e05693aefb745e1890a624c71d55133