HOME

AU-12

AU-12 H M L
Description

The information system:
a. Provides audit record generation capability for the auditable events defined in AU-2 a. at [Assignment: organization-defined information system components];
b. Allows [Assignment: organization-defined personnel or roles] to select which auditable events are to be audited by specific components of the information system; and
c. Generates audit records for the events defined in AU-2 d. with the content defined in AU-3.

FedRAMP
  • H AU-12 (a) [all information system and network components where audit capability is deployed/available]
  • M AU-12 (a) [all information system and network components where audit capability is deployed/available]
  • L AU-12 (a) [all information system and network components where audit capability is deployed/available]
DISA Cloud Computing SRG

a. all information system and network components;
b. ISSM or individuals appointed by the ISSM

Source:
DoD RMF TAG

Supplemental Guidance

Audit records can be generated from many different information system components. The list of audited events is the set of events for which audits are to be generated. These events are typically a subset of all events for which the information system is capable of generating audit records.

Related Controls