• Icon: Sub-task Sub-task
    • Resolution: Done
    • Icon: Major Major
    • None
    • None
    • None
    • False
    • Hide

      None

      Show
      None
    • False
    • Agent Sprint 273, Agent Sprint 274, Agent Sprint 275, Agent Sprint 276, Agent Sprint 277, Agent Sprint 278

      Guidance applicable to Red Hat (What do offerings need to do to fulfill this?)
      For a product:
      Product must have integrated logging facilities
      Logging for security critical functions must be enabled by default. Others should be configurable.
      Logs must have all the relevant information described above including timestamps in-coordination with either system clock or network time.
      Ability for admins to review audit logs

      For a service:
      Ensure logging is enabled in the service, at least for security critical parts like account login.
      Ensure that there is a mechanism in place to detect log entries that might indicate an breach.
      Ensure logs have all the relevant information mentioned above.
      Services must send security relevant information to corporate Splunk (Infosec requirement).
      NOTE: Services must send security relevant information to the corporate Splunk.
      It must be possible to configure products to send logs to a centralized logging facility.

      Imported from SD Elements: https://redhat.sdelements.com/bunits/psse-secure-development/group-1-foundational-platform-offering-openshift/assisted-installer-ui/tasks/phase/specifications/359-T1385/

      Training Modules

      Continuous Compliance
      Opsec Fundamentals
      PCI SSF Compliance
      Secure Software Acceptance and Deployment
      Defending Node.js
      Defending Databases

              rawagner@redhat.com Rastislav Wagner
              sdelements Jira-SD-Elements-Integration Bot
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: