STIGhub
STIGs
RMF Controls
Compare
← All Controls
AU-2
Audit and Accountability
Rev 5
Event Logging
CCI Identifiers (10)
CCI-000123
Identify the organization-defined event types that the system is capable of logging in support of the audit function.
CCI-000124
Coordinate the event logging function with other organizational entities requiring audit-related information to guide and inform the selection criteria for events to be logged.
CCI-000125
Provide a rationale for why the event types selected for logging are deemed to be adequate for support after-the-fact investigations of incidents.
CCI-000126
Specify the organization-defined event types (subset of the event types defined in AU-2a) along with the frequency of (or situation requiring logging for each identified event type.
CCI-000129
The organization defines in the auditable events that the information system must be capable of auditing based on a risk assessment and mission/business needs.
CCI-001484
Defines the frequency of (or situation requiring) logging for each identified event.
CCI-001485
Defines the event types for logging within the system.
CCI-001571
Defines the event types that the system is capable of logging in support of the audit function.
CCI-003810
Review and update the event types selected for logging on an organization-defined frequency.
CCI-003811
Defines the frequency at which the event types selected for logging will be reviewed and updated.
Linked STIG Checks (39)
Across 4 STIGs. Click to expand.
▶
IBM MaaS360 with Watson v10.x MDM Security Technical Implementation Guide
2 checks
▶
Oracle Linux 7 Security Technical Implementation Guide
1 check
▶
Red Hat Enterprise Linux 7 Security Technical Implementation Guide
4 checks
▶
SUSE Linux Enterprise Server v11 for System z Security Technical Implementation Guide
32 checks