6.1.3 Ensure Accounting of Configuration Changes

Information

When External AAA is used Configuration Change events should be sent to configured accounting destinations.

Rationale:

To protect any asset, including a Juniper router, an audit trail of changes made to the devices configuration, when they were made and by whom is essential.

JUNOS can log these events to RADIUS and/or TACACS+ servers to allow reliable, centralized records to be kept for all of the devices in your network.

Solution

Configure Accounting of Logins and Configuration Changes by entering the following commands under the [edit system accounting] hierarchy;

[edit system accounting]
user@host#set events change-log

Default Value:

External accounting is not configured by default

See Also

https://workbench.cisecurity.org/files/3069

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-3, 800-53|AU-12, CSCv7|6.2, CSCv7|6.3

Plugin: Juniper

Control ID: ffe524de3221fdf1260e344164306f127b1b1dd0bf2b56f94beff7aab79d9064