STIGQter STIGQter: STIG Summary: Database Security Requirements Guide Version: 4 Release: 5 Benchmark Date: 01 Apr 2026:

The DBMS must use NSA-approved cryptography to protect classified information in accordance with the data owner's requirements.

DISA Rule

SV-233495r1117186_rule

Vulnerability Number

V-233495

Group Title

SRG-APP-000416

Rule Version

SRG-APP-000416-DB-000380

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Deploy a DBMS compatible with the use of NSA-approved cryptography.

Configure the DBMS and related system components to use NSA-approved cryptography to protect classified information in accordance with applicable federal laws, Executive Orders, directives, policies, regulations, and standards.

Check Contents

If the DBMS is deployed in an unclassified environment, this is not applicable (NA).

If the DBMS is not configured to use NSA-approved cryptography to protect classified information in accordance with applicable federal laws, Executive Orders, directives, policies, regulations, and standards, this is a finding.

Vulnerability Number

V-233495

Documentable

False

Rule Version

SRG-APP-000416-DB-000380

Severity Override Guidance

If the DBMS is deployed in an unclassified environment, this is not applicable (NA).

If the DBMS is not configured to use NSA-approved cryptography to protect classified information in accordance with applicable federal laws, Executive Orders, directives, policies, regulations, and standards, this is a finding.

Check Content Reference

M

Target Key

2902