SV-23734r1_rule
V-21522
Deficient design: VVoIP system re: DNS
VVoIP 5212 (LAN)
CAT III
10
Consider not using DNS for the VVoIP system unless it is required.
In the event DNS is used in the VVoIP system, ensure the DNS server serving the VVoIP system is dedicated to the VVoIP system and that any DNS server interaction with other DNS servers is limited. Additionally ensure internal system URLS and information is not published to the enterprise WAN or the Internet.
NOTE: In the event a DNS server is implemented within the VVoIP system, the DNS STIG must be applied to the server.
Examine the configurations of the DNS server(s) serving the VVoIP system and those outside the system. Attempt to use a system specific URL that should not be published outside the system to see if an IP address is returned.
This is a finding in the event restricted URLs are reachable from outside the restriction zone.
V-21522
False
VVoIP 5212 (LAN)
Examine the configurations of the DNS server(s) serving the VVoIP system and those outside the system. Attempt to use a system specific URL that should not be published outside the system to see if an IP address is returned.
This is a finding in the event restricted URLs are reachable from outside the restriction zone.
M
Information Assurance Officer
594