UCF STIG Viewer Logo

The network element must perform data origin authentication and data integrity verification on all resolution responses received whether or not local client systems explicitly request this service.


Overview

Finding ID Version Rule ID IA Controls Severity
V-34650 SRG-NET-000303-IDPS-NA SV-45525r1_rule Low
Description
A recursive resolving or caching domain name system (DNS) server is an example of an information system that provides name/address resolution service for local clients. Authoritative DNS servers are examples of authoritative sources that own DNS data. Network elements that use technologies other than the DNS to map between host/service names and network addresses provide other means to enable clients to verify the authenticity and integrity of response data. DNS is not an IDPS function. This requirement is a function of the DNS and is not applicable to the IDPS.
STIG Date
Intrusion Detection and Prevention Systems (IDPS) Security Requirements Guide 2012-11-19

Details

Check Text ( C-42874r1_chk )
This requirement is NA for IDPS. No fix required.
Fix Text (F-38922r1_fix)
This requirement is NA for IDPS. No fix required.