Servers hosting SDN controllers must have logging enabled.

Overview

Finding IDVersionRule IDIA ControlsSeverity
V-73103NET-SDN-016SV-87755r1_ruleCCI-001846medium
Description
It is critical for both network and security personnel to be aware of the state of the SDN infrastructure to maintain network stability. Associating logged events that have occurred within the SDN controller as well as network state information provided by the SDN-enabled components is essential to compile an accurate risk assessment and troubleshoot network outages.
STIGDate
SDN Using NV Security Technical Implementation Guide2017-03-01

Details

Check Text (C-87755r1_chk)

Review all servers hosting an SDN controller and verify that logging has been enabled. If logging is not enabled on all servers hosting an SDN controller, this is a finding.

Fix Text (F-79549r1_fix)

Enable logging on all servers hosting an SDN controller.