UCF STIG Viewer Logo

The network element must ensure detected unauthorized security-relevant configuration changes are tracked.


Overview

Finding ID Version Rule ID IA Controls Severity
V-34073 SRG-NET-000129-DNS-NA SV-44526r1_rule Medium
Description
Uncoordinated or incorrect configuration changes to network components can potentially lead to network outages and possibly compromises. Centrally managing configuration changes for network elements can ensure they are done at the correct time and if necessary in synchronization with each other, which can be vital for nodes that peer and require compatible configurations. Centralized configuration management also provides visibility and tracking of enterprise level activity promoting a sound configuration management procedure, as well as an automatic mechanism to track detected unauthorized security-relevant configuration changes. This is not a function of DNS, this may be performed by a third party tool for incident response.
STIG Date
Domain Name System (DNS) Security Requirements Guide 2012-10-24

Details

Check Text ( C-42039r1_chk )
This is not a function of DNS.
Fix Text (F-37987r1_fix)
This requirement is NA for DNS. No fix required.