STIGQter STIGQter: STIG Summary: Infoblox 8.x DNS Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 09 Jan 2021:

The Infoblox system must notify the ISSO and ISSM in the event of failed security verification tests.

DISA Rule

SV-233927r621666_rule

Vulnerability Number

V-233927

Group Title

SRG-APP-000275-DNS-000040

Rule Version

IDNS-8X-800001

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

1. Navigate to Grid >> Grid Manager >> Grid Properties, or System >> System Manager >> System Properties if using a stand-alone configuration.
2. Select the Monitoring tab.
3. Enable "Log to External Syslog Servers" using the check box.
4. Configure an "External Syslog Server".
5. When complete, click "Save & Close" to save the changes and exit the "Properties" screen.
6. Perform a service restart if necessary.
7. Review the SYSLOG data on the remote SYSLOG server to validate operation.

Check Contents

Infoblox systems are capable of providing notifications via remote SYSLOG, SNMP, and SMTP.

1. Navigate to Grid >> Grid Manager >> Grid Properties, or System >> System Manager >> System Properties if using a stand-alone configuration.
2. Select the Monitoring tab.
3. Verify that "Log to External Syslog Servers" is enabled and an External Syslog Server is configured.
4. When complete, click "Cancel" to exit the "Properties" screen.

If no external notifications are enabled, this is a finding.

Vulnerability Number

V-233927

Documentable

False

Rule Version

IDNS-8X-800001

Severity Override Guidance

Infoblox systems are capable of providing notifications via remote SYSLOG, SNMP, and SMTP.

1. Navigate to Grid >> Grid Manager >> Grid Properties, or System >> System Manager >> System Properties if using a stand-alone configuration.
2. Select the Monitoring tab.
3. Verify that "Log to External Syslog Servers" is enabled and an External Syslog Server is configured.
4. When complete, click "Cancel" to exit the "Properties" screen.

If no external notifications are enabled, this is a finding.

Check Content Reference

M

Target Key

5251

Comments