1.10.10 Ensure 'logging trap severity level' is greater than or equal to '5'

Information

Determines which syslog messages should be sent to the syslog server.

Rationale:

Syslog messages are an invaluable tool for accounting, monitoring, and routine troubleshooting. Logging to a central syslog server is a method of collecting messages from devices to a server running a syslog daemon. This helps in aggregation of logs and alerts. This form of logging provides protected long-term storage for logs, since are also useful in incident handling.

Solution

Step 1: Run the following command to verify logging trap is equal to 5:

hostname(config)# logging trap 5

The severity level can be chosen between 0 and 7

See Also

https://workbench.cisecurity.org/files/3294

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-12, CSCv7|6.3

Plugin: Cisco

Control ID: 42e39882fe1272e76b189f64f72e3299694951fb2783a5e4105b75ba039eb4dd