Check: NET0388
      
      
        
  Network - Firewall:
  NET0388
  
    (in versions v8 r25 through v8 r21)
  
      
      
    
  Title
The network device must dump logs when they reach 75% capacity to a syslog server. (Cat III impact)
Discussion
Having a procedure tested and verified will prevent the logs from filling when they reach 75% capacity.
Check Content
Review the device configuration to determine if logs are being dumped to a syslog when meeting the 75% storage capacity. If logs aren't being dumped at 75% capacity, this is a finding.
Fix Text
Configure the device to dump logs to a syslog server when reaching a storage capacity of 75%.
Additional Identifiers
Rule ID:
Vulnerability ID: V-14647
Group Title:
Expert Comments
      Expert comments are only available to logged-in users.
    
  
  
      
        
        
      
      
        
  CCIs
      
      
        
        
      
    
  
    
  CCIs tied to check.
  
  
  | Number | Definition | 
|---|---|
| No CCIs are assigned to this check | 
      
        
        
      
      
        
  Controls
      
      
        
        
      
    
  
    
  Controls tied to check. These are derived from the CCIs shown above.
  
  
  | Number | Title | 
|---|---|
| No controls are assigned to this check |