1. Home
  2. Security Hardening
  3. TNS Best Practice FireEye
  4. FireEye – Configuration auditing logs the required number of changes

FireEye – Configuration auditing logs the required number of changes

Details

Saving past configurations allows them to be audited for unauthorized changes and reviewed when troubleshooting. Auditing cannot be disabled but can be set to 1, significantly reducing effectiveness. Configuration changes can be exported through the Log Manager.

Solution

The default value is 1000. Edit the configuration and add or modify this line:n

configuration audit max-changes 1000

This security hardening control applies to the following category of controls within NIST 800-53: Configuration Management.This control applies to the following type of system FireEye.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles