SV-207551r612253_rule
V-207551
SRG-APP-000001-DNS-000115
BIND-9X-001052
CAT II
10
Edit the "named.conf" file.
Add the "transfers-out" sub statement to the "options" statement block.
The value of the "transfers-out" will be based on organizational requirements needed to support DNS operations.
Restart the BIND 9.x process.
Verify the name server is configured to limit the number of concurrent client connections to the number of allowed dynamic update clients:
Inspect the "named.conf" file for the following:
options {
transfers-out 10;
};
If the "options" statement does not contain a "transfers-out" sub statement, this is a finding.
V-207551
False
BIND-9X-001052
Verify the name server is configured to limit the number of concurrent client connections to the number of allowed dynamic update clients:
Inspect the "named.conf" file for the following:
options {
transfers-out 10;
};
If the "options" statement does not contain a "transfers-out" sub statement, this is a finding.
M
2926