UCF STIG Viewer Logo

E-mail backups must meet schedule or storage requirements.


Overview

Finding ID Version Rule ID IA Controls Severity
V-18883 EMG3-007 EMail SV-20679r1_rule CODB-2 Medium
Description
Hardware failures or other (sometimes physical) disasters can cause data loss to active applications, and the need for expedient recovery. Ensuring that backups are conducted on an agreed schedule creates a timely copy from which to recover active systems. Storing backup contents at a separate physical location protects the backup data from site-specific physical disasters. Backup schedule and storage location are determined in accordance with the MAC category and confidentiality level.
STIG Date
Email Services Policy 2012-01-31

Details

Check Text ( C-22537r1_chk )
Procedure: Interview the IAO. Access the site's System Security Plan. Review backup frequency schedule. Also, review file locations, access protections and procedures for offline files, and storage methods.

Criteria: If E-mail backups are conducted on schedule and are stored appropriately, this is not a finding.
Fix Text (F-19580r1_fix)
Procedure: Perform followup to ensure that E-mail backups are conducted on schedule and are stored appropriately