STIGQter STIGQter: STIG Summary: Domain Name System (DNS) Security Requirements Guide Version: 2 Release: 4 Benchmark Date: 23 Oct 2015:

The DNS server implementation must produce audit records containing information to establish the source of the events.

DISA Rule

SV-69035r1_rule

Vulnerability Number

V-54789

Group Title

SRG-APP-000098-DNS-000009

Rule Version

SRG-APP-000098-DNS-000009

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the DNS server to produce log records which indicate the source of the events.

Additionally, configure the audit facility of the DNS system to provide information to establish the source of events.

Check Contents

Review the DNS server configuration to determine if the source of the events is a configurable option within the audit/logging utility and if it is being captured and stored.

If the DNS is not configured to capture and store the source of an event, this is a finding.

Vulnerability Number

V-54789

Documentable

False

Rule Version

SRG-APP-000098-DNS-000009

Severity Override Guidance

Review the DNS server configuration to determine if the source of the events is a configurable option within the audit/logging utility and if it is being captured and stored.

If the DNS is not configured to capture and store the source of an event, this is a finding.

Check Content Reference

M

Target Key

2355

Comments