Skip to content

[Feature Request] Compliance Setting: "OS must authenticate the remote logging server for offloading audit logs via rsyslog" #557

@ferricoxide

Description

@ferricoxide

Is your feature request related to a problem? Please describe.

STIG scans calling out RHEL-09-652040/OL09-00-005015/ALMA-09-052600

Describe the solution you'd like

Per the STIG guidance:

Configure AlmaLinux OS 9 to authenticate the remote logging server for offloading audit logs by setting the following option in "/etc/rsyslog.conf" or "/etc/rsyslog.d/[customfile].conf":

$ActionSendStreamDriverAuthMode x509/name

Describe alternatives you've considered

Additional context

Metadata

Metadata

Assignees

No one assigned

    Labels

    EL9Compliance for EL9-Flavored Distrosenhancement

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions