STIGQter STIGQter: STIG Summary: Infoblox 8.x DNS Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 09 Jan 2021:

Infoblox Grid configuration must be backed up on a regular basis.

DISA Rule

SV-233884r621666_rule

Vulnerability Number

V-233884

Group Title

SRG-APP-000516-DNS-000500

Rule Version

IDNS-8X-400026

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

1. Navigate to Grid >> Grid Manager >> Members tab.
2. In the toolbar, click the drop-down menu for "Backup", "Schedule Backup". Configure remote backup to TFTP, FTP, or SCP.
3. When complete, click "Save & Close" to save the changes and exit the "Properties" screen.
4. Perform a service restart if necessary.
5. Review the existence of backup files on the remote system.

Check Contents

1. Navigate to Grid >> Grid Manager >> Members tab.
2. In the toolbar, click the drop-down menu for "Backup", "Schedule Backup".
3. Verify configuration of a remote backup option (TFTP, FTP, or SCP). Review the existence of backup files on the remote system.

If a remote backup system is not configured, or a local backup procedure is not documented, this is a finding.

If no remote or local backup is configured, but the Grid contains a Grid Master candidate, the severity of the finding is reduced.

Vulnerability Number

V-233884

Documentable

False

Rule Version

IDNS-8X-400026

Severity Override Guidance

1. Navigate to Grid >> Grid Manager >> Members tab.
2. In the toolbar, click the drop-down menu for "Backup", "Schedule Backup".
3. Verify configuration of a remote backup option (TFTP, FTP, or SCP). Review the existence of backup files on the remote system.

If a remote backup system is not configured, or a local backup procedure is not documented, this is a finding.

If no remote or local backup is configured, but the Grid contains a Grid Master candidate, the severity of the finding is reduced.

Check Content Reference

M

Target Key

5251

Comments