Finding ID | Version | Rule ID | IA Controls | Severity |
---|---|---|---|---|
V-52253 | O112-C2-012600 | SV-66469r1_rule | Medium |
Description |
---|
Information system backup is a critical step in maintaining data assurance and availability. System-level information includes: system-state information, operating system and application software, and licenses. Backups shall be consistent with organizational recovery time and recovery point objectives. Databases that do not back up information regularly risk the loss of that information in the event of a system failure. Most databases contain functionality to allow regular backups; it is important that this functionality is enabled and configured correctly to prevent data loss. |
STIG | Date |
---|---|
Oracle Database 11.2g Security Technical Implementation Guide | 2016-12-15 |
Check Text ( C-54309r1_chk ) |
---|
Review DBMS and OS backup configuration to determine that system-level data is backed up in according with organization-defined frequency. If the system-level data of the DBMS is not backed up to the organization-defined frequency, this is a finding. |
Fix Text (F-57069r1_fix) |
---|
Utilize DBMS, OS or third-party product(s), to meet the requirement of backing up system data according to the organization-defined frequency. |