Check: SRG-APP-000071-MAPP-NA
Mobile Application SRG:
SRG-APP-000071-MAPP-NA
(in version v1 r1)
Title
Applications must configure their auditing to reduce the likelihood of storage capacity being exceeded. (Cat II impact)
Discussion
Applications need to be cognizant of potential audit log storage capacity issues. During the installation and/or configuration process, applications should detect and determine if adequate storage capacity has been allocated for audit logs. During the installation process, a notification may be provided to the installer indicating, based on the auditing configuration chosen and the amount of storage space allocated for audit logs, the amount of storage capacity available is not sufficient enough to meet storage requirements. Rationale for non-applicability: The MOS SRG contains a requirement for logging application startup and a number of other security-critical events. No further audit logging must be coded into each application running on the MOS, but application developers may do so for application-specific concerns.
Check Content
This requirement is NA for the MAPP SRG.
Fix Text
The requirement is NA. No fix is required.
Additional Identifiers
Rule ID: SV-46546r1_rule
Vulnerability ID: V-35259
Group Title:
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000138 |
The organization configures auditing to reduce the likelihood of storage capacity being exceeded. |
Controls
Number | Title |
---|---|
No controls are assigned to this check |