STIGQter STIGQter: STIG Summary: Domain Name System (DNS) Security Requirements Guide Version: 2 Release: 4 Benchmark Date: 23 Oct 2015:

The DNS implementation must ensure each NS record in a zone file points to an active name server authoritative for the domain specified in that record.

DISA Rule

SV-69169r1_rule

Vulnerability Number

V-54923

Group Title

SRG-APP-000516-DNS-000085

Rule Version

SRG-APP-000516-DNS-000085

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Remove any NS record in a zone file that does not point to an active name server authoritative for the domain specified in that record.

Check Contents

Review the zone file's configuration and confirm that each NS record points to an active name server authoritative for the domain. If this is not the case, this is a finding.

Vulnerability Number

V-54923

Documentable

False

Rule Version

SRG-APP-000516-DNS-000085

Severity Override Guidance

Review the zone file's configuration and confirm that each NS record points to an active name server authoritative for the domain. If this is not the case, this is a finding.

Check Content Reference

M

Target Key

2355

Comments