1. Home
  2. Security Hardening
  3. DISA IIS 10.0 Server V2R1
  4. IIST-SV-000116 – The log data and records from the IIS 10.0 web server must be backed up onto a different system or media.

IIST-SV-000116 – The log data and records from the IIS 10.0 web server must be backed up onto a different system or media.

Details

Protection of log data includes ensuring log data is not accidentally lost or deleted. Backing up log records to an unrelated system, or onto separate media than the system on which the web server is running, helps to ensure the log records will be retained in the event of a catastrophic system failure.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Configure system backups to include the directory paths of all IIS 10.0 web server and website log files.

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Audit and Accountability.This control applies to the following type of system Windows.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles