SV-214201r612370_rule
V-214201
SRG-APP-000514-DNS-000075
IDNS-7X-000690
CAT I
10
Navigate to Data Management >> DNS >> Grid DNS properties.
Toggle Advanced Mode click on "DNSSEC" tab.
Follow manual key rollover procedures and update all non-compliant Key Signing Keys (KSK) and Zone Signing Keys (ZSK) to utilize FIPS-approved algorithms.
Note: For Infoblox DNS systems on a Classified network, this requirement is Not Applicable.
Navigate to Data Management >> DNS >> Grid DNS properties.
Toggle Advanced Mode click on "DNSSEC" tab.
Validate that all Key Signing Keys (KSK) and Zone Signing Keys (ZSK) utilize FIPS approved algorithms.
When complete, click "Cancel" to exit the "Properties" screen.
If non FIPS-approved algorithms are in use, this is a finding.
V-214201
False
IDNS-7X-000690
Note: For Infoblox DNS systems on a Classified network, this requirement is Not Applicable.
Navigate to Data Management >> DNS >> Grid DNS properties.
Toggle Advanced Mode click on "DNSSEC" tab.
Validate that all Key Signing Keys (KSK) and Zone Signing Keys (ZSK) utilize FIPS approved algorithms.
When complete, click "Cancel" to exit the "Properties" screen.
If non FIPS-approved algorithms are in use, this is a finding.
M
3995