SV-222595r508029_rule
V-222595
SRG-APP-000247
APSC-DV-002410
CAT II
10
Build the application to address issues that are found in a redundant environment and utilize redundancy mechanisms to provide high availability.
Interview the application administrator and review the system documentation to determine if the application has been designated as a high availability system and if the application is designed to operate in a high availability environment.
If the application has not been designated as a high availability system, this requirement is not applicable.
Review the application architecture documentation and identify solutions that provide application DoS protections.
Verify the application has been built to work in a clustered or otherwise high availability environment in accordance with documented availability requirements.
This includes:
- load balancers
- redundant systems such as multiple web, application servers or DB servers
- high bandwidth or redundant data circuits
- multiple data centers (geographic dispersal)
- server clusters
If the application has been designated as high availability but the architecture is not built to high availability standards, this is a finding.
V-222595
False
APSC-DV-002410
Interview the application administrator and review the system documentation to determine if the application has been designated as a high availability system and if the application is designed to operate in a high availability environment.
If the application has not been designated as a high availability system, this requirement is not applicable.
Review the application architecture documentation and identify solutions that provide application DoS protections.
Verify the application has been built to work in a clustered or otherwise high availability environment in accordance with documented availability requirements.
This includes:
- load balancers
- redundant systems such as multiple web, application servers or DB servers
- high bandwidth or redundant data circuits
- multiple data centers (geographic dispersal)
- server clusters
If the application has been designated as high availability but the architecture is not built to high availability standards, this is a finding.
M
4093