Free Trial

Safari Books Online is a digital library providing on-demand subscription access to thousands of learning resources.

  • Create BookmarkCreate Bookmark
  • Create Note or TagCreate Note or Tag
  • PrintPrint
Share this Page URL
Help

Chapter 10 Auditing > Understanding Configuration Management

Understanding Configuration Management

Configuration management is the practice of ensuring that systems are configured with security in mind and that configuration is tightly controlled. Many organizations use configuration management to ensure that systems are configured with a secure baseline. For example, servers start with similar system configurations that make them more secure from the default configuration. Specific types of servers (such as web servers or application servers) can then deviate from this configuration based on individual needs.

FIPS Pub 200 was mentioned previously as a standard that requires minimum accounting requirements for federal agencies. It also lists minimum requirements for configuration control, as follows:


  

You are currently reading a PREVIEW of this book.

                                                                                                                    

Get instant access to over $1 million worth of books and videos.

  

Start a Free Trial


  
  • Safari Books Online
  • Create BookmarkCreate Bookmark
  • Create Note or TagCreate Note or Tag
  • PrintPrint