STIGhub
STIGs
RMF Controls
Compare
← AU-8 — Time Stamps
CCI-001889
Definition
Record time stamps for audit records that meet organization-defined granularity of time measurement.
Parent Control
AU-8
Time Stamps
Audit and Accountability
Linked STIG Checks (80)
V-204692
CAT II
AAA Services must be configured with a minimum granularity of one second to record time stamps for audit records.
AAA Services Security Requirements Guide
V-274017
CAT II
Amazon Linux 2023 must have the audit package installed.
Amazon Linux 2023 Security Technical Implementation Guide
V-274018
CAT II
Amazon Linux 2023 must produce audit records containing information to establish what type of events occurred.
Amazon Linux 2023 Security Technical Implementation Guide
V-274024
CAT II
Amazon Linux 2023 must have the Advanced Intrusion Detection Environment (AIDE) package installed.
Amazon Linux 2023 Security Technical Implementation Guide
V-268080
CAT II
NixOS must enable the audit daemon.
Anduril NixOS Security Technical Implementation Guide
V-214265
CAT II
The Apache web server must generate log records that can be mapped to Coordinated Universal Time (UTC) or Greenwich Mean Time (GMT) which are stamped at a minimum granularity of one second.
Apache Server 2.4 UNIX Server Security Technical Implementation Guide
V-252464
CAT II
The macOS system must initiate session audits at system startup, using internal clocks with time stamps for audit records that meet a minimum granularity of one second and can be mapped to Coordinated Universal Time (UTC) or Greenwich Mean Time (GMT), in order to generate audit records containing information to establish what type of events occurred, the identity of any individual or process associated with the event, including individual identities of group account users, establish where the events occurred, source of the event, and outcome of the events including all account enabling actions, full-text recording of privileged commands, and information about the use of encryption for access wireless access to and from the system.
Apple macOS 12 (Monterey) Security Technical Implementation Guide
V-257170
CAT II
The macOS system must produce audit records containing information to establish when, where, what type, the source, and the outcome for all DOD-defined auditable events and actions.
Apple macOS 13 (Ventura) Security Technical Implementation Guide
V-268454
CAT II
The macOS system must enable security auditing.
Apple macOS 15 (Sequoia) Security Technical Implementation Guide
V-277062
CAT II
The macOS system must enable security auditing.
Apple macOS 26 (Tahoe) Security Technical Implementation Guide
V-222499
CAT II
The application must record time stamps for audit records that meet a granularity of one second for a minimum degree of precision.
Application Security and Development Security Technical Implementation Guide
V-204795
CAT II
The application server must record time stamps for log records that meet a granularity of one second for a minimum degree of precision.
Application Server Security Requirements Guide
V-255958
CAT II
The Arista network device must be configured to synchronize internal system clocks using redundant authenticated time sources.
Arista MLS EOS 4.2x NDM Security Technical Implementation Guide
V-255958
CAT II
The Arista network device must be configured to synchronize internal system clocks using redundant authenticated time sources.
Arista MLS EOS 4.X NDM Security Technical Implementation Guide
V-255514
CAT III
The CA API Gateway must record time stamps for audit records that meet a granularity of one second for a minimum degree of precision.
CA API Gateway NDM Security Technical Implementation Guide
V-206505
CAT III
The Central Log Server must be configured to record time stamps for when log records are received by the log server that meet a granularity of one second for a minimum degree of precision.
Central Log Server Security Requirements Guide
V-239925
CAT II
The Cisco ASA must be configured to record time stamps for audit records that meet a granularity of one second for a minimum degree of precision.
Cisco ASA NDM Security Technical Implementation Guide
V-215693
CAT II
The Cisco router must be configured to synchronize its clock with the primary and secondary time sources using redundant authoritative time sources.
Cisco IOS Router NDM Security Technical Implementation Guide
V-220601
CAT II
The Cisco switch must be configured to synchronize its clock with the primary and secondary time sources using redundant authoritative time sources.
Cisco IOS Switch NDM Security Technical Implementation Guide
V-215838
CAT II
The Cisco router must be configured to synchronize its clock with the primary and secondary time sources using redundant authoritative time sources.
Cisco IOS XE Router NDM Security Technical Implementation Guide
V-220549
CAT II
The Cisco switch must be configured to synchronize its clock with the primary and secondary time sources using redundant authoritative time sources.
Cisco IOS XE Switch NDM Security Technical Implementation Guide
V-216536
CAT II
The Cisco router must record time stamps for audit records that meet a granularity of one second for a minimum degree of precision.
Cisco IOS XR Router NDM Security Technical Implementation Guide
V-269469
CAT II
The audit package must be installed on AlmaLinux OS 9.
Cloud Linux AlmaLinux OS 9 Security Technical Implementation Guide
V-269532
CAT II
The auditd service must be enabled on AlmaLinux OS 9.
Cloud Linux AlmaLinux OS 9 Security Technical Implementation Guide
V-233182
CAT II
The container platform must record time stamps for audit records that meet a granularity of one second for a minimum degree of precision.
Container Platform Security Requirements Guide
V-233581
CAT II
PostgreSQL must generate time stamps, for audit records and application data, with a minimum granularity of one second.
Crunchy Data PostgreSQL Security Technical Implementation Guide
V-261922
CAT II
PostgreSQL must generate time stamps for audit records and application data with a minimum granularity of one second.
Crunchy Data Postgres 16 Security Technical Implementation Guide
V-255571
CAT II
The DBN-6300 must record time stamps for audit records that meet a granularity of one second for a minimum degree of precision.
DBN-6300 NDM Security Technical Implementation Guide
V-206595
CAT II
The DBMS must generate time stamps, for audit records and application data, with a minimum granularity of one second.
Database Security Requirements Guide
V-259282
CAT II
The EDB Postgres Advanced Server must generate time stamps for audit records and application data, with a minimum granularity of one second.
EnterpriseDB Postgres Advanced Server (EPAS) Security Technical Implementation Guide
V-278385
CAT II
NGINX must provide audit records for DOD-defined auditable events.
F5 NGINX Security Technical Implementation Guide
V-203713
CAT II
The operating system must record time stamps for audit records that meet a minimum granularity of one second for a minimum degree of precision.
General Purpose Operating System Security Requirements Guide
V-217467
CAT II
The HP FlexFabric Switch must record time stamps for audit records that meet a granularity of one second for a minimum degree of precision.
HP FlexFabric Switch NDM Security Technical Implementation Guide
V-213787
CAT II
Time stamps in database tables, intended for auditing or activity-tracking purposes, must include both date and time of day, with a minimum granularity of one second.
MS SQL Server 2014 Database Security Technical Implementation Guide
V-202103
CAT II
The network device must record time stamps for audit records that meet a granularity of one second for a minimum degree of precision.
Network Device Management Security Requirements Guide
V-279565
CAT II
Nutanix OS must have the audit.x86_64 package installed.
Nutanix Acropolis GPOS Security Technical Implementation Guide
V-248519
CAT II
The OL 8 audit package must be installed.
Oracle Linux 8 Security Technical Implementation Guide
V-248520
CAT II
OL 8 audit records must contain information to establish what type of events occurred, the source of events, where events occurred, and the outcome of events.
Oracle Linux 8 Security Technical Implementation Guide
V-271519
CAT II
OL 9 must have the audit package installed.
Oracle Linux 9 Security Technical Implementation Guide
V-271520
CAT II
OL 9 audit service must be enabled.
Oracle Linux 9 Security Technical Implementation Guide
V-214115
CAT II
PostgreSQL must generate time stamps, for audit records and application data, with a minimum granularity of one second.
PostgreSQL 9.x Security Technical Implementation Guide
V-252844
CAT II
Rancher MCM must generate audit records for all DoD-defined auditable events within all components in the platform.
Rancher Government Solutions Multi-Cluster Manager Security Technical Implementation Guide
V-254555
CAT II
Rancher RKE2 components must be configured in accordance with the security configuration settings based on DOD security configuration or implementation guidance, including SRGs, STIGs, NSA configuration guides, CTOs, and DTMs.
Rancher Government Solutions RKE2 Security Technical Implementation Guide
V-280993
CAT II
RHEL 10 must have the "audit" package installed.
Red Hat Enterprise Linux 10 Security Technical Implementation Guide
V-280994
CAT II
RHEL 10 must enable the audit service.
Red Hat Enterprise Linux 10 Security Technical Implementation Guide
V-258151
CAT II
RHEL 9 audit package must be installed.
Red Hat Enterprise Linux 9 Security Technical Implementation Guide
V-258152
CAT II
RHEL 9 audit service must be enabled.
Red Hat Enterprise Linux 9 Security Technical Implementation Guide
V-256087
CAT II
The Riverbed NetProfiler must be configured to record time stamps for audit records that meet a granularity of one second for a minimum degree of precision.
Riverbed NetProfiler Security Technical Implementation Guide
V-261410
CAT II
SLEM 5 must have the auditing package installed.
SUSE Linux Enterprise Micro (SLEM) 5 Security Technical Implementation Guide
V-261462
CAT II
SLEM 5 must generate audit records for all uses of privileged functions.
SUSE Linux Enterprise Micro (SLEM) 5 Security Technical Implementation Guide
V-217190
CAT II
The SUSE operating system must have the auditing package installed.
SUSE Linux Enterprise Server 12 Security Technical Implementation Guide
V-217209
CAT III
The SUSE operating system must generate audit records for all uses of the privileged functions.
SUSE Linux Enterprise Server 12 Security Technical Implementation Guide
V-282437
CAT II
TOSS 5 audit package must be installed.
Tri-Lab Operating System Stack (TOSS) 5 Security Technical Implementation Guide
V-282438
CAT II
TOSS 5 audit service must be enabled.
Tri-Lab Operating System Stack (TOSS) 5 Security Technical Implementation Guide
V-234517
CAT II
The UEM server must be configured to record time stamps for audit records that meet a granularity of one second for a minimum degree of precision.
Unified Endpoint Management Server Security Requirements Guide
V-240308
CAT II
vRA PostgreSQL database log file data must contain required data elements.
VMW vRealize Automation 7.x PostgreSQL Security Technical Implementation Guide
V-239808
CAT II
The vROps PostgreSQL DB must generate time stamps, for audit records and application data, with a minimum granularity of one second.
VMW vRealize Operations Manager 6.x PostgreSQL Security Technical Implementation Guide
V-240264
CAT II
Lighttpd must record time stamps for log records to a minimum granularity of time.
VMware vRealize Automation 7.x Lighttpd Security Technical Implementation Guide
V-240851
CAT II
tc Server HORIZON must record time stamps for log records to a minimum granularity of one second.
VMware vRealize Automation 7.x tc Server Security Technical Implementation Guide
V-240852
CAT II
tc Server VCO must record time stamps for log records to a minimum granularity of one second.
VMware vRealize Automation 7.x tc Server Security Technical Implementation Guide
V-240853
CAT II
tc Server VCAC must record time stamps for log records to a minimum granularity of one second.
VMware vRealize Automation 7.x tc Server Security Technical Implementation Guide
V-241707
CAT II
tc Server UI must record time stamps for log records to a minimum granularity of one second.
VMware vRealize Operations Manager 6.x tc Server Security Technical Implementation Guide
V-241708
CAT II
tc Server CaSa must record time stamps for log records to a minimum granularity of one second.
VMware vRealize Operations Manager 6.x tc Server Security Technical Implementation Guide
V-241709
CAT II
tc Server API must record time stamps for log records to a minimum granularity of one second.
VMware vRealize Operations Manager 6.x tc Server Security Technical Implementation Guide
V-256650
CAT II
VAMI must produce log records containing sufficient information to establish what type of events occurred.
VMware vSphere 7.0 VAMI Security Technical Implementation Guide
V-256677
CAT II
ESX Agent Manager must record user access in a format that enables monitoring of remote access.
VMware vSphere 7.0 vCenter Appliance EAM Security Technical Implementation Guide
V-256710
CAT II
Lookup Service must record user access in a format that enables monitoring of remote access.
VMware vSphere 7.0 vCenter Appliance Lookup Service Security Technical Implementation Guide
V-256615
CAT II
Performance Charts must record user access in a format that enables monitoring of remote access.
VMware vSphere 7.0 vCenter Appliance Perfcharts Security Technical Implementation Guide
V-256592
CAT II
VMware Postgres log files must contain required fields.
VMware vSphere 7.0 vCenter Appliance PostgreSQL Security Technical Implementation Guide
V-256749
CAT II
The Security Token Service must record user access in a format that enables monitoring of remote access.
VMware vSphere 7.0 vCenter Appliance STS Security Technical Implementation Guide
V-256782
CAT II
vSphere UI must record user access in a format that enables monitoring of remote access.
VMware vSphere 7.0 vCenter Appliance UI Security Technical Implementation Guide
V-259006
CAT II
The vCenter ESX Agent Manager service must produce log records containing sufficient information regarding event details.
VMware vSphere 8.0 vCenter Appliance ESX Agent Manager (EAM) Security Technical Implementation Guide
V-259040
CAT II
The vCenter Lookup service must produce log records containing sufficient information regarding event details.
VMware vSphere 8.0 vCenter Appliance Lookup Service Security Technical Implementation Guide
V-259140
CAT II
The vCenter VAMI service must produce log records containing sufficient information to establish what type of events occurred.
VMware vSphere 8.0 vCenter Appliance Management Interface (VAMI) Security Technical Implementation Guide
V-259074
CAT II
The vCenter Perfcharts service must produce log records containing sufficient information regarding event details.
VMware vSphere 8.0 vCenter Appliance Perfcharts Security Technical Implementation Guide
V-259171
CAT II
The vCenter PostgreSQL service must produce logs containing sufficient information to establish what type of events occurred.
VMware vSphere 8.0 vCenter Appliance PostgreSQL Security Technical Implementation Guide
V-258974
CAT II
The vCenter STS service must produce log records containing sufficient information regarding event details.
VMware vSphere 8.0 vCenter Appliance Secure Token Service (STS) Security Technical Implementation Guide
V-259107
CAT II
The vCenter UI service must produce log records containing sufficient information regarding event details.
VMware vSphere 8.0 vCenter Appliance User Interface (UI) Security Technical Implementation Guide
V-207465
CAT II
The VMM must record time stamps for audit records that meet a granularity of one second for a minimum degree of precision.
Virtual Machine Manager Security Requirements Guide
V-206426
CAT II
The web server must record time stamps for log records to a minimum granularity of one second.
Web Server Security Requirements Guide