Skip to main content
Skip table of contents

FISMA – Reports

The following table provides a listing of all reports included in this compliance package. For each report, the targeted data source, the required classifications, and the required Log Source Lists are provided. If you are unable to implement the Data Management Settings, this table should be referred to so as to understand which reports will be impacted.

Reports with a data source of Log Manager will not populate in a fully collection- optimized deployment. Contact LogRhythm Support for additional details.

Report IDReport NameData SourceIntelligent IndexingRequired ClassificationsRequired Log Source Lists

357

FISMA: Account Lockout Summary

Log Mart

No

Account Modified, Access Revoked,

FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: Network Access Control Systems, FISMA: Security Systems

358

FISMA: Account Management Activity

Log Mart

No

Account Created, Account Deleted, Account Modified

FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Network Access Control Systems

359

FISMA: Alarm And Response Activity

Event Manager

N/A

N/A

FISMA: Data Loss Prevention Systems, FISMA: Network Access Control Systems, FISMA: Security Systems, FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: File Integrity Monitoring Systems

360

FISMA: Anti-Virus Signature Update Report

Log Manager

Yes

Information

FISMA: Production Servers, FISMA: Workstations, FISMA: Security Systems

361

FISMA: Attacks Detected

Log Mart

No

Attack, Compromise, Denial of Service

FISMA: Production Servers, FISMA: Workstations, FISMA: Network Access Control Systems, FISMA: Security Systems

362

FISMA: Audit Failure By Host

Log Mart

No

Access Failure, Authentication Failure, Other Audit Failure

FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: Network Access Control Systems

363

FISMA: Audit Failure By User

Log Manager

Yes

Access Failure, Authentication Failure, Other Audit Failure

FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: Network Access Control Systems

364

FISMA: Compromises Detected

Log Mart

No

Compromise

FISMA: Production Servers, FISMA: Workstations, FISMA: Network Access Control Systems, FISMA: Security Systems

403

FISMA: Configuration Change Summary

Log Manager

Yes

Configuration

FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: Network Access Control Systems, FISMA: Security Systems

376

FISMA: Data Loss Defender Log Detail

Log Manager

Yes

Access Success, Configuration, Error

FISMA: Data Loss Prevention Systems * unable to view

375

FISMA: Data Loss Defender Log Detail

Log Manager

Yes

Access Success, Configuration, Error

FISMA: Data Loss Prevention Systems

377

FISMA: Data Loss Defender Log Summary

Log Mart

No

Access Success, Configuration, Error

FISMA: Data Loss Prevention Systems

365

FISMA: Default Account Summary

Log Mart

No

Authentication Success

FISMA: Production Servers, FISMA: Workstations, FISMA: Network Access Control Systems

404

FISMA: Denial Of Service Detected

Log Mart

No

Denial of Service

FISMA: Production Servers, FISMA: Workstations, FISMA: Network Access Control Systems, FISMA: Security Systems

366

FISMA: Disabled Accounts

Log Mart

No

Account Modified, Access Revoked,

FISMA: Production Servers, FISMA: Workstations, FISMA: Network Access Control Systems

405

FISMA: Door Access Summary

Log Manager

Yes

Access Success, Authentication Success, Compromise

FISMA: Security Systems

367

FISMA: Failed Application Access

Log Mart

No

Access Failure, Authentication Failure

FISMA: Production Servers, FISMA: Workstations

368

FISMA: Failed File Access

Log Manager

Yes

Access Failure

FISMA: Production Servers, FISMA: Workstations

369

FISMA: Failed Host Access

Log Mart

No

Authentication Failure

FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: Network Access Control Systems, FISMA: Security Systems

371

FISMA: File Integrity Monitor Log Detail

Log Manager

No

Activity

FISMA: File Integrity Monitoring Systems

370

FISMA: File Integrity Monitor Log Detail

Log Manager

No

Activity

FISMA: File Integrity Monitoring Systems

372

FISMA: File Integrity Monitor Summary

Log Manager

No

Activity

FISMA: File Integrity Monitoring Systems

373

FISMA: Host Access Granted And Revoked

Log Mart

No

Access Granted, Access Revoked

FISMA: Production Servers, FISMA: Workstations, FISMA: Network Access Control Systems

374

FISMA: Host Authentication Summary

Log Mart

No

Authentication Success

FISMA: Production Servers, FISMA: Workstations, FISMA: Network Access Control Systems

378

FISMA: Malware Detected

Log Manager

Yes

Malware

FISMA: Production Servers, FISMA: Workstations, FISMA: Network Access Control Systems, FISMA: Security Systems

379

FISMA: Network Connection Summary

Log Manager

No

Network Allow, Network Deny, Network Traffic

FISMA: Network Access Control Systems

380

FISMA: Network Service Summary

Log Manager

No

Network Allow, Network Deny, Network Traffic

FISMA: Network Access Control Systems

381

FISMA: New Account Summary

Log Mart

No

Account Created

FISMA: Production Servers, FISMA: Workstations, FISMA: Network Access Control Systems

382

FISMA: Object Access Summary

Log Manager

No

Access Success

FISMA: Production Servers

383

FISMA: Policy Activity Summary

Log Mart

No

Access Granted, Access Revoked, Policy

FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: Network Access Control Systems, FISMA: Security Systems

406

FISMA: Processes By User

Log Manager

No

Startup and Shutdown

FISMA: Production Servers, FISMA: Workstations

387

FISMA: Security Event Summary

Log Mart

No

Attack, Compromise, Denial of Service, Malware, Reconnaissance, Suspicious

FISMA: Data Loss Prevention Systems, FISMA: Network Access Control Systems, FISMA: Security Systems, FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: File Integrity Monitoring Systems

386

FISMA: Security Event Summary

Log Mart

No

Attack, Compromise, Denial of Service, Malware, Reconnaissance, Suspicious

FISMA: Data Loss Prevention Systems, FISMA: Network Access Control Systems, FISMA: Security Systems, FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: File Integrity Monitoring Systems

385

FISMA: Security Event Summary

Log Mart

No

Attack, Compromise, Denial of Service, Malware, Reconnaissance, Suspicious

FISMA: Data Loss Prevention Systems, FISMA: Network Access Control Systems, FISMA: Security Systems, FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: File Integrity Monitoring Systems

384

FISMA: Security Event Summary

Log Mart

No

Attack, Compromise, Denial of Service, Malware, Reconnaissance, Suspicious

FISMA: Data Loss Prevention Systems, FISMA: Network Access Control Systems, FISMA: Security Systems, FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: File Integrity Monitoring Systems

407

FISMA: Spam Summary

Log Mart

No

Activity, Failed Activity

FISMA: Production Servers, FISMA: Security Systems

388

FISMA: Suspicious Activity By Host

Log Mart

No

Suspicious

FISMA: Data Loss Prevention Systems, FISMA: Network Access Control Systems, FISMA: Security Systems, FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: File Integrity Monitoring Systems

389

FISMA: Suspicious Activity By User

Log Mart

No

Suspicious

FISMA: Data Loss Prevention Systems, FISMA: Network Access Control Systems, FISMA: Security Systems, FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: File Integrity Monitoring Systems

390

FISMA: System Critical And Error Conditions

Log Mart

No

Critical, Error

FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: Network Access Control Systems, FISMA: Security Systems

391

FISMA: System Startup And Shutdown

Log Mart

No

Startup and Shutdown,

FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: Network Access Control Systems, FISMA: Security Systems

392

FISMA: Terminated Account Summary

Log Mart

No

Account Deleted

FISMA: Production Servers, FISMA: Workstations, FISMA: Network Access Control Systems

393

FISMA: Top Attackers

Log Mart

No

Attack, Compromise, Denial of Service, Failed Attack, Failed Denial of Service, Failed Malware, Failed Suspicious, Malware, Reconnaissance, Suspicious

FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: Network Access Control Systems, FISMA: Security Systems

394

FISMA: Top
Suspicious Users

Log Manager

Yes

Access Failure, Activity, Attack, Authentication Failure, Compromise, Denial of Service, Failed Activity, Failed Denial of Service, Failed Malware, Failed Misuse, Failed Suspicious, Malware, Misuse, Other Audit Failure, Reconnaissance, Suspicious

FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: Network Access Control Systems, FISMA: Security Systems

395

FISMA: Top Targeted Applications

Log Mart

No

Attack, Compromise, Denial of Service, Failed Attack, Failed Denial of Service, Failed Malware, Failed Suspicious, Malware, Reconnaissance, Suspicious

FISMA: Production Servers, FISMA: Workstations, FISMA: Network Access Control Systems, FISMA: Security Systems

396

FISMA: Top Targeted Hosts

Log Mart

No

Attack, Compromise, Denial of Service, Failed Attack, Failed Denial of Service, Failed Malware, Failed Suspicious, Malware, Reconnaissance, Suspicious

FISMA: Production Servers, FISMA: Workstations, FISMA: Network Access Control Systems, FISMA: Security Systems

398

FISMA: Usage Auditing Event Detail

Event Manager

N/A

N/A

FISMA: Data Loss Prevention Systems, FISMA: Network Access Control Systems, FISMA: Security Systems, FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: File Integrity Monitoring Systems

397

FISMA: Usage Auditing Event Detail

Event Manager

N/A

N/A

FISMA: Data Loss Prevention Systems, FISMA: Network Access Control Systems, FISMA: Security Systems, FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: File Integrity Monitoring Systems

399

FISMA: User Authentication Summary

Log Mart

No

Authentication Failure, Authentication Success

FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: Network Access Control Systems

400

FISMA: User Misuse Summary

Log Manager

Yes

Misuse

FISMA: Production Servers, FISMA: Workstations, FISMA: Wireless Access Points, FISMA: Remote Access Systems, FISMA: Data Loss Prevention Systems, FISMA: Network Access Control Systems, FISMA: Security Systems

401

FISMA: User Object Access Summary

Log Manager

No

Access Success

FISMA: Production Servers, FISMA: Workstations

402

FISMA:
Vulnerabilities Detected

Log Mart

No

Vulnerability

FISMA: Security Systems

JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.