The ISSO must ensure application audit trails are retained for at least 1 year for applications without SAMI data, and 5 years for applications including SAMI data.
Severity | Group ID | Group Title | Version | Rule ID | Date | STIG Version |
---|---|---|---|---|---|---|
medium | V-222621 | SRG-APP-000516 | APSC-DV-002900 | SV-222621r961863_rule | 2025-02-12 | 6 |
Description |
---|
Log files are a requirement to trace intruder activity or to audit user activity. |
ℹ️ Check |
---|
Verify a process is in place to retain application audit log files for one year and five years for SAMI data. If audit logs have not been retained for one year or five years for SAMI data, this is a finding. |
✔️ Fix |
---|
Retain application audit log files for one year and five years for SAMI data. |