Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-18883 | EMG3-007 EMail | SV-20679r1_rule | CODB-2 | Medium |
Description |
---|
Hardware failures or other (sometimes physical) disasters can cause data loss to active applications, and the need for expedient recovery. Ensuring that backups are conducted on an agreed schedule creates a timely copy from which to recover active systems. Storing backup contents at a separate physical location protects the backup data from site-specific physical disasters. Backup schedule and storage location are determined in accordance with the MAC category and confidentiality level. |
STIG | Date |
---|---|
Email Services Policy | 2012-01-31 |
Check Text ( C-22537r1_chk ) |
---|
Procedure: Interview the IAO. Access the site's System Security Plan. Review backup frequency schedule. Also, review file locations, access protections and procedures for offline files, and storage methods. Criteria: If E-mail backups are conducted on schedule and are stored appropriately, this is not a finding. |
Fix Text (F-19580r1_fix) |
---|
Procedure: Perform followup to ensure that E-mail backups are conducted on schedule and are stored appropriately |