SV-207550r612253_rule
V-207550
SRG-APP-000001-DNS-000001
BIND-9X-001051
CAT II
10
Edit the "named.conf" file.
Add the "transfers-in" sub statement to the "options" statement block.
The value of the "transfers-in" will be based on organizational requirements needed to support DNS operations.
Restart the BIND 9.x process.
If this is not a secondary name server, this requirement is Not Applicable.
Verify the name server is configured to limit the total number of zones that can be requested at one time:
Inspect the "named.conf" file for the following:
options {
transfers-in 10;
};
If the "options" statement does not contain a "transfers-in" sub statement, this is a finding.
V-207550
False
BIND-9X-001051
If this is not a secondary name server, this requirement is Not Applicable.
Verify the name server is configured to limit the total number of zones that can be requested at one time:
Inspect the "named.conf" file for the following:
options {
transfers-in 10;
};
If the "options" statement does not contain a "transfers-in" sub statement, this is a finding.
M
2926