SV-233866r621666_rule
V-233866
SRG-APP-000516-DNS-000089
IDNS-8X-400008
CAT II
10
DNSSEC must be enabled prior to zone signing.
1. Enable by navigating to Data Management >> DNS >> Grid DNS properties.
2. Toggle Advanced Mode and click on the "DNSSEC" tab.
3. Enable the "Enable DNSSEC" option.
4. When complete, click "Save & Close" to save the changes and exit the "Properties" screen.
5. Perform a service restart if necessary.
Note: For Infoblox DNS systems on a classified network, this requirement is Not Applicable.
1. Navigate to Data Management >> DNS >> Grid DNS properties.
2. Toggle Advanced Mode and click on the "DNSSEC" tab.
3. Validate that DNSSEC is enabled using the check box.
4. When complete, click "Cancel" to exit the "Properties" screen.
If "Enable DNSSEC" is not configured, this is a finding.
V-233866
False
IDNS-8X-400008
Note: For Infoblox DNS systems on a classified network, this requirement is Not Applicable.
1. Navigate to Data Management >> DNS >> Grid DNS properties.
2. Toggle Advanced Mode and click on the "DNSSEC" tab.
3. Validate that DNSSEC is enabled using the check box.
4. When complete, click "Cancel" to exit the "Properties" screen.
If "Enable DNSSEC" is not configured, this is a finding.
M
5251