UCF STIG Viewer Logo

The DBMS must support the requirement to activate an alarm and/or automatically shut down the information system if an application component failure is detected. This can include conducting a graceful application shutdown to avoid losing information.


Overview

Finding ID Version Rule ID IA Controls Severity
V-32572 SRG-APP-000268-DB-000164 SV-42909r1_rule Medium
Description
Predictable failure prevention requires organizational planning to address system failure issues. If components key to maintaining systems security fail to function, the system could continue operating in an insecure state. The organization must be prepared and the application must support requirements that specify if the application must alarm for such conditions and/or automatically shut down the application or the system. If appropriate actions are not taken when application component failures occur, a Denial of Service (DoS) condition may occur.
STIG Date
Database Security Requirements Guide 2012-07-02

Details

Check Text ( C-41011r1_chk )
Check DBMS configuration to verify the system activates and alarm and/or triggers a system shutdown when an application component failure is detected. If the DBMS does not take either or both actions, this is a finding.
Fix Text (F-36487r1_fix)
Configure the DBMS to activate an alarm and/or trigger a system shutdown when an application component failure is detected.