SV-207582r612253_rule
V-207582
SRG-APP-000516-DNS-000099
BIND-9X-001322
CAT II
10
Configure the permissions of each file to the following:
named.conf : rw-r-----
root hints : rw-r-----
master zone file(s): rw-r-----
slave zone file(s): rw-rw----
With the assistance of the DNS administrator, identify the following files:
named.conf : rw-r-----
root hints : rw-r-----
master zone file(s): rw-r-----
slave zone file(s): rw-rw----
Note: The name of the root hints file is defined in named.conf. Common names for the file are root.hints, named.cache, or db.cache.
Verify that the permissions for the core BIND 9.x server files are at least as restrictive as listed above.
If the identified files are not as least as restrictive as listed above, this is a finding.
V-207582
False
BIND-9X-001322
With the assistance of the DNS administrator, identify the following files:
named.conf : rw-r-----
root hints : rw-r-----
master zone file(s): rw-r-----
slave zone file(s): rw-rw----
Note: The name of the root hints file is defined in named.conf. Common names for the file are root.hints, named.cache, or db.cache.
Verify that the permissions for the core BIND 9.x server files are at least as restrictive as listed above.
If the identified files are not as least as restrictive as listed above, this is a finding.
M
2926