STIGhubSTIGhub
STIGhub— A free STIG search and compliance tool·STIGs updated 12 hours ago
Powered by Pylon·Privacy·Terms·Feedback·© 2026 Beacon Cloud Solutions, Inc.
← Back to General Application (GAPP) Security Requirements Guide

V-288238

CAT II (Medium)

Applications used for nonlocal maintenance sessions must audit organization-defined audit events for nonlocal maintenance and diagnostic sessions.

Rule ID

SV-288238r1252299_rule

STIG

General Application (GAPP) Security Requirements Guide

Version

V1R0.1

CCIs

CCI-002884

Discussion

If events associated with nonlocal administrative access or diagnostic sessions are not logged and audited, a major tool for assessing and investigating attacks would not be available. This requirement addresses auditing-related issues associated with maintenance tools used specifically for diagnostic and repair actions on organizational information systems. This requirement applies to hardware/software diagnostic test equipment or tools. This requirement does not cover hardware/software components that may support information system maintenance, yet are a part of the system (e.g., the software implementing "ping," "ls," "ipconfig," or the hardware and software implementing the monitoring port of an Ethernet switch).

Check Content

If the application is not a maintenance application, this requirement is Not Applicable.

Review the application's documentation and deployed configuration to determine whether the auditing mechanism generates organization-defined audit records for nonlocal maintenance and diagnostic sessions.

If the application's auditing mechanism does not generate audit records for nonlocal maintenance and diagnostic session organization-defined audit events, this is a finding.

Fix Text

Navigate to the auditing function configuration within the application.

Configure the application's auditing mechanism to generate organization-defined audit records for nonlocal maintenance and diagnostic sessions.