SV-233892r621666_rule
V-233892
SRG-APP-000350-DNS-000044
IDNS-8X-400034
CAT II
10
1. Navigate to Data Management >> DNS. Select "Grid DNS Properties".
2. Toggle Advanced Mode and review the "Logging" tab.
3. Enable the following categories using the check boxes:
client
config
database
dnssec
lame servers
network
notify
rate-limit
resolver
security
transfer-in
transfer-out
update
update-security
4. When complete, click "Save & Close" to save the changes and exit the "Properties" screen.
5. Perform a service restart if necessary.
Infoblox systems allow configuration of DNS auditing based on selectable events. Verify that important event categories are enabled to log events.
1. Navigate to Data Management >> DNS and select "Grid DNS Properties".
2. Toggle Advanced Mode and review the "Logging" tab.
3. Validate that at a minimum the following categories are enabled:
client
config
database
dnssec
lame servers
network
notify
rate-limit
resolver
security
transfer-in
transfer-out
update
update-security
4. When complete, click "Cancel" to exit the "Properties" screen.
If the named logging categories are not enabled, this is a finding.
V-233892
False
IDNS-8X-400034
Infoblox systems allow configuration of DNS auditing based on selectable events. Verify that important event categories are enabled to log events.
1. Navigate to Data Management >> DNS and select "Grid DNS Properties".
2. Toggle Advanced Mode and review the "Logging" tab.
3. Validate that at a minimum the following categories are enabled:
client
config
database
dnssec
lame servers
network
notify
rate-limit
resolver
security
transfer-in
transfer-out
update
update-security
4. When complete, click "Cancel" to exit the "Properties" screen.
If the named logging categories are not enabled, this is a finding.
M
5251