SV-207532r612253_rule
V-207532
SRG-APP-000243-DNS-000034
BIND-9X-000001
CAT III
10
Configure the BIND 9.x server to operate in a chroot(ed) directory structure.
Verify the directory structure where the primary BIND 9.x Server configuration files are stored is running in a chroot(ed) environment:
# ps -ef | grep named
named 3015 1 0 12:59 ? 00:00:00 /usr/sbin/named -u named -t /var/named/chroot
If the output does not contain "-t <chroot_path>", this is a finding.
V-207532
False
BIND-9X-000001
Verify the directory structure where the primary BIND 9.x Server configuration files are stored is running in a chroot(ed) environment:
# ps -ef | grep named
named 3015 1 0 12:59 ? 00:00:00 /usr/sbin/named -u named -t /var/named/chroot
If the output does not contain "-t <chroot_path>", this is a finding.
M
2926