Skip to content
arrow_back
search
E8-MF-ML2.8 bolt ASD Essential Eight

Timely analysis of event logs from internet-facing servers

Regularly check logs from online servers to quickly spot security issues.

record_voice_over

Plain language

Regularly checking the logs from your internet-facing servers is akin to keeping an eye on your store's front door. If you don't review them frequently, you might miss signs of a cyber attack that could harm your business. By examining these logs promptly, you can catch potential security threats early before they cause severe damage.

Framework

ASD Essential Eight

Control effect

Detective

E8 mitigation strategy

Multi-factor authentication

Classifications

N/A

Official last update

N/A

Control Stack last updated

19 Mar 2026

E8 maturity levels

ML2

Official control statement

Event logs from internet-facing servers are analysed in a timely manner to detect cyber security events.
bolt ASD Essential Eight E8-MF-ML2.8
priority_high

Why it matters

If internet-facing server logs aren’t analysed promptly, intrusions and suspicious activity may go unnoticed, increasing the chance of data theft, malware spread or service disruption.

settings

Operational notes

Review internet-facing server logs daily (or near real-time) via SIEM; alert on suspicious auth, web errors and admin changes, and escalate confirmed incidents within defined timeframes.

Mapping detail

Mapping

Direction

Controls