UCF STIG Viewer Logo

The network element must enforce dynamic traffic flow control based on policy allowing or disallowing flows based upon traffic types and rates within or out of profile.


Overview

Finding ID Version Rule ID IA Controls Severity
V-33922 SRG-NET-000029-DNS-NA SV-44375r1_rule Medium
Description
Identifying source and destination addresses for information flows within the network allows forensic reconstruction of events when required, and increases policy compliance by attributing policy violations to specific individuals. Means to enforce this enhancement include ensuring the network element authenticates the source involved in receiving information. Enforcement of traffic flow is not a function of DNS.
STIG Date
Domain Name System (DNS) Security Requirements Guide 2012-10-24

Details

Check Text ( C-41931r1_chk )
This is not a function of DNS.
Fix Text (F-37835r1_fix)
This requirement is NA for DNS. No fix required.