[Contents]
[Prev]
[Next]
[Index]
[Report an Error]
Configuring Common Criteria Event Logging
A secure JUNOS
environment requires the auditing of configuration changes through
syslog. RADIUS/TACACS+can also be used.
In addition, the JUNOS software can:
- Send automated responses to audit events (syslog entry
creation).
- Allow authorized managers to examine audit logs.
- Send audit files to external servers.
- Allow authorized managers to return the system to a known
state.
The logging for Common Criteria must capture
the following events:
- Changes to secret data in the configuration.
- Committed changes.
- Login/logout of users.
- System startup and shutdown.
In addition, we recommend that logging also:
- Capture all changes to the configuration.
- Store logging information remotely.
This chapter provides the following information
about JUNOS software for Common Criteria event logging:
[Contents]
[Prev]
[Next]
[Index]
[Report an Error]