Audits
Settings
Links
Tenable Cloud
Tenable Community & Support
Tenable University
Theme
Light
Dark
Auto
Help
Plugins
Overview
Plugins Pipeline
Newest
Updated
Search
Nessus Families
WAS Families
NNM Families
Tenable OT Security Families
Tenable Cloud Security Families
Tenable Self-Hosted Container Security Families
About Plugin Families
Release Notes
Audits
Overview
Newest
Updated
Search Audit Files
Search Items
References
Authorities
Documentation
Download All Audit Files
Indicators
Overview
Search
Indicators of Attack
Indicators of Exposure
Release Notes
CVEs
Overview
Newest
Updated
Search
Attack Path Techniques
Overview
Search
Links
Tenable Cloud
Tenable Community & Support
Tenable University
Settings
Theme
Light
Dark
Auto
Detections
Plugins
Overview
Plugins Pipeline
Release Notes
Newest
Updated
Search
Nessus Families
WAS Families
NNM Families
Tenable OT Security Families
Tenable Cloud Security Families
Tenable Self-Hosted Container Security Families
About Plugin Families
Audits
Overview
Newest
Updated
Search Audit Files
Search Items
References
Authorities
Documentation
Download All Audit Files
Indicators
Overview
Search
Indicators of Attack
Indicators of Exposure
Release Notes
Analytics
CVEs
Overview
Newest
Updated
Search
Attack Path Techniques
Overview
Search
Audits
References
CCI
CCI-000139
CCI
CCI|CCI-000139
Title
Alert organization-defined personnel or roles within an organization-defined time period in the event of an audit logging process failure.
Reference Item Details
Reference:
CCI - DISA Control Correlation Identifier
Category:
2024
Audit Items
View all Reference Audit Items
Name
Plugin
Audit Name
1.9 PHTN-40-000021
Unix
CIS VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 STIG v1.0.0 CAT II
1.28 SOL-11.1-010390
Unix
CIS Solaris 11 X86 STIG v1.0.0 CAT I
1.28 SOL-11.1-010390
Unix
CIS Solaris 11 SPARC STIG v1.0.0 CAT I
1.48 APPL-14-001030
Unix
CIS Apple macOS 14 Sonoma STIG v1.0.0 CAT II
1.48 APPL-26-001030
Unix
CIS Apple macOS 26 Tahoe STIG v1.0.0 CAT II
1.69 RHEL-10-200690
Unix
CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT II
1.72 RHEL-10-200691
Unix
CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT II
1.113 AZLX-23-002215
Unix
CIS Amazon Linux 2023 STIG v1.0.0 CAT II
1.122 UBTU-22-653025
Unix
CIS Ubuntu Linux 22.04 LTS STIG v1.0.0 CAT III
1.145 SLES-15-030570
Unix
CIS SUSE Linux Enterprise Server 15 STIG v1.0.0 CAT II
1.146 SLES-15-030580
Unix
CIS SUSE Linux Enterprise Server 15 STIG v1.0.0 CAT II
1.154 OL09-00-000815
Unix
CIS Oracle Linux 9 STIG v1.0.0 CAT II
1.155 OL09-00-000820
Unix
CIS Oracle Linux 9 STIG v1.0.0 CAT II
1.156 OL09-00-000825
Unix
CIS Oracle Linux 9 STIG v1.0.0 CAT II
1.173 RHEL-10-500035
Unix
CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT II
1.176 UBTU-24-900980
Unix
CIS Ubuntu Linux 24.04 LTS STIG v1.0.0 CAT III
1.178 RHEL-09-252060
Unix
CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
1.183 RHEL-10-500210
Unix
CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT II
1.207 OL08-00-030020
Unix
CIS Oracle Linux 8 STIG v1.0.0 CAT II
1.208 OL08-00-030030
Unix
CIS Oracle Linux 8 STIG v1.0.0 CAT II
1.307 OL09-00-002405
Unix
CIS Oracle Linux 9 STIG v1.0.0 CAT II
1.339 RHEL-10-700670
Unix
CIS Red Hat Enterprise Linux 10 STIG v1.0.0 CAT II
1.379 RHEL-09-653070
Unix
CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
1.390 RHEL-09-653125
Unix
CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
1.416 ALMA-09-053810
Unix
CIS Cloud Linux AlmaLinux OS 9 STIG v1.0.0 CAT II
1.417 ALMA-09-053920
Unix
CIS Cloud Linux AlmaLinux OS 9 STIG v1.0.0 CAT II
1.443 RHEL-09-654265
Unix
CIS Red Hat Enterprise Linux 9 STIG v1.0.0 CAT II
3.092 - The system must generate an audit event when the audit log reaches a percentage of full threshold.
Windows
DISA Windows Vista STIG v6r41
4.1.2.10 Ensure the auditing processing failures are handled - System Administrator [SA] and Information System Security Officer [ISSO] at a minimum in the event of an audit processing failure.
Unix
CIS Red Hat Enterprise Linux 7 STIG v2.0.0 STIG
4.1.2.10 Ensure the auditing processing failures are handled.
Unix
CIS Amazon Linux 2 STIG v2.0.1 STIG
AIX7-00-002008 - AIX must be configured to generate an audit record when 75% of the audit file system is full.
Unix
DISA IBM AIX 7.x STIG v3r2
ALMA-09-053810 - AlmaLinux OS 9 System Administrator (SA) and/or information system security officer (ISSO) (at a minimum) must be alerted of an audit processing failure event.
Unix
DISA Cloud Linux AlmaLinux OS 9 STIG v1r6
ALMA-09-053920 - AlmaLinux OS 9 must have mail aliases to notify the information system security officer (ISSO) and system administrator (SA) (at a minimum) in the event of an audit processing failure.
Unix
DISA Cloud Linux AlmaLinux OS 9 STIG v1r6
APPL-14-001030 - The macOS system must configure audit capacity warning.
Unix
DISA Apple macOS 14 Sonoma STIG v2r4
APPL-15-001030 - The macOS system must configure audit capacity warning.
Unix
DISA Apple macOS 15 Sequoia STIG v1r7
APPL-26-001030 - The macOS system must configure audit capacity warning.
Unix
DISA Apple macOS 26 Tahoe STIG v1r2
AS24-U1-000160 - The Apache web server must use a logging mechanism that is configured to alert the Information System Security Officer (ISSO) and System Administrator (SA) in the event of a processing failure.
Unix
DISA STIG Apache Server 2.4 Unix Server v3r2 Middleware
AS24-U1-000160 - The Apache web server must use a logging mechanism that is configured to alert the Information System Security Officer (ISSO) and System Administrator (SA) in the event of a processing failure.
Unix
DISA STIG Apache Server 2.4 Unix Server v3r2
AS24-W1-000160 - The Apache web server must use a logging mechanism that is configured to alert the (ISSO) and System Administrator (SA) in the event of a processing failure.
Windows
DISA STIG Apache Server 2.4 Windows Server v2r3
AS24-W1-000160 - The Apache web server must use a logging mechanism that is configured to alert the (ISSO) and System Administrator (SA) in the event of a processing failure.
Windows
DISA STIG Apache Server 2.4 Windows Server v3r4
Big Sur - Alert Audit Processing Failure
Unix
NIST macOS Big Sur v1.4.0 - All Profiles
Catalina - Alert Audit Processing Failure
Unix
NIST macOS Catalina v1.5.0 - All Profiles
DKER-EE-001590 - Docker Enterprise must alert the ISSO and SA (at a minimum) in the event of an audit processing failure.
Unix
DISA STIG Docker Enterprise 2.x Linux/Unix v2r2
F5BI-DM-000067 - The BIG-IP appliance must be configured to alert the ISSO and SA (at a minimum) in the event of an audit processing failure.
F5
DISA F5 BIG-IP Device Management STIG v2r4
GEN002719 - The audit system must alert the SA in the event of an audit processing failure - '/etc/audit/auditd.conf disk_error_action'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN002719 - The audit system must alert the SA in the event of an audit processing failure - '/etc/audit/auditd.conf disk_error_action'
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN002719 - The audit system must alert the SA in the event of an audit processing failure - '/etc/audit/auditd.conf disk_full_action'
Unix
DISA STIG for Red Hat Enterprise Linux 5 v1r18 Audit
GEN002719 - The audit system must alert the SA in the event of an audit processing failure - '/etc/audit/auditd.conf disk_full_action'
Unix
DISA STIG for Oracle Linux 5 v2r1
GEN002719 - The audit system must alert the SA in the event of an audit processing failure.
Unix
DISA STIG Solaris 10 SPARC v2r4
GEN002719 - The audit system must alert the SA in the event of an audit processing failure.
Unix
DISA STIG Solaris 10 X86 v2r4