The container platform must implement the capability to centrally review and analyze audit records from multiple components within the system.

Severity
Group ID
Group Title
Version
Rule ID
Date
STIG Version
mediumV-263587SRG-APP-000745SRG-APP-000745-CTR-000120SV-263587r982455_rule2024-12-052
Description
Automated mechanisms for centralized reviews and analyses include Security Information and Event Management products.
ℹ️ Check
Verify the container platform is configured to implement the capability to centrally review and analyze audit records from multiple components within the system. If the container platform is not configured to implement the capability to centrally review and analyze audit records from multiple components within the system, this is a finding.
✔️ Fix
Configure the container platform to implement the capability to centrally review and analyze audit records from multiple components within the system.