AU-5(5) - Response to Audit Logging Process Failures | Alternate Audit Logging Capability

Provide an alternate audit logging capability in the event of a failure in primary audit logging capability that implements [Assignment: organization-defined alternate audit logging functionality].


ID: AU-5(5)
Enhancement of : AU-5

Space Segment Guidance

An alternate audit logging capability is vital for space vehicles, where storage or transmission disruptions can happen due to extreme environmental factors or adversarial interference. If the primary logging mechanism fails—a corrupted partition in the spacecraft’s non-volatile memory or an overfilled buffer—a backup logging path ensures no critical security or health metrics are lost. One practical approach is to allocate a separate secure partition or a secondary onboard recorder that periodically synchronizes with the primary log store. If the main logger malfunctions, the backup can continue collecting essential data, which can be downlinked at the next communication window. Additionally, automated fault detection routines can trigger a switchover to the backup system upon sensing anomalies in the primary logger. Adopting a well-designed fallback scheme, mission operators preserve the evidentiary chain essential for post-incident forensics and anomaly resolution, even under challenging conditions.