1. Home
  2. Security Hardening
  3. DISA STIG Arista MLS DCS 7000 Series NDM V1R3
  4. AMLS-NM-000400 – The Arista Multilayer Switch must, at a minimum, off-load audit records for interconnected systems in real time – trap logging

AMLS-NM-000400 – The Arista Multilayer Switch must, at a minimum, off-load audit records for interconnected systems in real time – trap logging

Details

Information stored in one location is vulnerable to accidental or incidental deletion or alteration.

Off-loading is a common process in information systems with limited audit storage capacity.

Solution

Configure the network device to off-load interconnected systems in real time and off-load standalone systems weekly.

Arista EOS logs can be exported to, including by a regular syslog server.

Configuration Example:

switch(config)#logging host[ a.b.c.d]
switch(config)#logging trap informational

Supportive Information

The following resource is also helpful.

This security hardening control applies to the following category of controls within NIST 800-53: Audit and Accountability.This control applies to the following type of system Arista.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles