SV-207581r612253_rule
V-207581
SRG-APP-000516-DNS-000099
BIND-9X-001321
CAT II
10
Change the ownership of the core BIND 9.x server files to the process account group.
# chgrp (BIND 9.x process account) <file>
Verify that the core BIND 9.x server files are group owned by a group designated for DNS administration only.
With the assistance of the DNS administrator, identify the following files:
named.conf
root hints
master zone file(s)
slave zone file(s)
Note: The name of the root hints file is defined in named.conf. Common names for the file are root.hints, named.cache, or db.cache.
If the identified files are not group owned by a group designated for DNS administration, this is a finding.
V-207581
False
BIND-9X-001321
Verify that the core BIND 9.x server files are group owned by a group designated for DNS administration only.
With the assistance of the DNS administrator, identify the following files:
named.conf
root hints
master zone file(s)
slave zone file(s)
Note: The name of the root hints file is defined in named.conf. Common names for the file are root.hints, named.cache, or db.cache.
If the identified files are not group owned by a group designated for DNS administration, this is a finding.
M
2926