SV-69071r1_rule
V-54825
SRG-APP-000219-DNS-000028
SRG-APP-000219-DNS-000028
CAT II
10
Configure the DNS server with transaction signing (TSIG) or SIG(0).
Review the DNS server implementation to confirm zone transfers are signing using transaction signing (TSIG) shared key or via SIG(0) asymmetric cryptography public keys.
If the DNS server does not ensure integrity of zone transfers by TSIG or SIG(0) signing, this is a finding.
V-54825
False
SRG-APP-000219-DNS-000028
Review the DNS server implementation to confirm zone transfers are signing using transaction signing (TSIG) shared key or via SIG(0) asymmetric cryptography public keys.
If the DNS server does not ensure integrity of zone transfers by TSIG or SIG(0) signing, this is a finding.
M
2355