STIGQter STIGQter: STIG Summary: Oracle Database 11g Installation STIG Version: 8 Release: 20 Benchmark Date: 28 Jul 2017:

Plans and procedures for testing DBMS installations, upgrades and patches should be defined and followed prior to production implementation.

DISA Rule

SV-24691r1_rule

Vulnerability Number

V-15139

Group Title

DBMS testing plans and procedures

Rule Version

DG0097-ORACLE11

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Develop, document and implement procedures for testing DBMS installations, upgrades and patches prior to deployment on production systems.

Check Contents

Review policy and procedures documented or noted in the System Security Plan and evidence of implementation for testing DBMS installations, upgrades and patches prior to production deployment.

If policy and procedures do not exist or evidence of implementation does not exist, this is a Finding.

Vulnerability Number

V-15139

Documentable

False

Rule Version

DG0097-ORACLE11

Severity Override Guidance

Review policy and procedures documented or noted in the System Security Plan and evidence of implementation for testing DBMS installations, upgrades and patches prior to production deployment.

If policy and procedures do not exist or evidence of implementation does not exist, this is a Finding.

Check Content Reference

I

Responsibility

Information Assurance Officer

Target Key

1368

Comments