STIGQter STIGQter: STIG Summary: Redis Enterprise 6.x Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 24 Oct 2024:

Redis Enterprise DBMS must record time stamps, in audit records and application data, that can be mapped to Coordinated Universal Time (UTC, formerly GMT).

DISA Rule

SV-251201r961443_rule

Vulnerability Number

V-251201

Group Title

SRG-APP-000374-DB-000322

Rule Version

RD6X-00-006200

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

To resolve an issue with the timestamps, perform the following steps:
1. Log in to the Redis Enterprise Control Plane.
2. Navigate to the settings tab.
3. Navigate to the general tab of the settings tab.
4. On screen find the Time zone setting.
5. Ensure that the time zone is mapped to UTC.
6. Click "Save".

Check Contents

To check the timestamp, perform the following steps:
1. Log in to the Redis Enterprise Control Plane.
2. Navigate to the settings tab.
3. Navigate to the general tab of the settings tab.
4. On screen find the Time zone setting.
5. Verify that the time zone is mapped to UTC.

If the time zone isn't mapped to UTC, this is a finding.

Vulnerability Number

V-251201

Documentable

False

Rule Version

RD6X-00-006200

Severity Override Guidance

To check the timestamp, perform the following steps:
1. Log in to the Redis Enterprise Control Plane.
2. Navigate to the settings tab.
3. Navigate to the general tab of the settings tab.
4. On screen find the Time zone setting.
5. Verify that the time zone is mapped to UTC.

If the time zone isn't mapped to UTC, this is a finding.

Check Content Reference

M

Target Key

5443