Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-22331 | GEN001375 | SV-38877r1_rule | ECSC-1 | Low |
Description |
---|
To provide availability for name resolution services, multiple redundant name servers are mandated. A failure in name resolution could lead to the failure of security functions requiring name resolution, which may include time synchronization, centralized authentication, and remote system logging. |
STIG | Date |
---|---|
Draft AIX Security Technical Implementation Guide | 2011-08-17 |
Check Text ( C-37008r1_chk ) |
---|
Determine if DNS is enabled on the system. # grep ^hosts= /etc/netsvc.conf | grep bind If no line is returned, or any returned line is commented out, the system does not use DNS, and this is not applicable. Determine the name servers used by the system. # grep nameserver /etc/resolv.conf If less than two lines are returned not commented out, this is a finding. |
Fix Text (F-23611r1_fix) |
---|
Edit /etc/resolv.conf and add additional nameserver lines until at least two are present. |