Include Login in Session Records

Information

The session record flags are specified as a comma-separated value list of one or more of the following flags: login, logout, and refresh. This option specifies whether login entries should be included in the Session records. The default is enabled.

Solution

Log into the Cisco APIC SSH Console:

Enter 'configure' mode

Ensure session-record-flags includes a value of login

Item Details

Audit Name: Tenable Cisco ACI

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-12c.

Plugin: Cisco_ACI

Control ID: 76d29c012ee469e45d642e96f84c003511ef847e64163205c11b3ed10e48924c