Ensure 'logging' is enabled

Information

Enables logging

Rationale:

Logging is fundamental for audit requirements and incident management and should be enabled on any business critical system storing or conveying information

Solution

Firepower Device Manager:

Use Objects > Syslog Servers and Device > System Settings > Logging Settings.

or

Firepower Management Center:

Device > Platform Setting > Threat Defense Policy > Syslog > Syslog Settings

See Also

https://www.cisco.com/c/en/us/td/docs/security/firepower/640/hardening/ftd/FTD_Hardening_Guide_v64.html

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-12c.

Plugin: Cisco_Firepower

Control ID: 85a257c34f6f0b51d788108f666d99c09ead142a30b971ddfa9ff0a0f8e62730