The Windows DNS Server must verify the correct operation of security functions upon system startup and/or restart, upon command by a user with privileged access, and/or every 30 days.
DISA Rule
SV-259407r961734_rule
Vulnerability Number
V-259407
Group Title
SRG-APP-000473-DNS-000072
Rule Version
WDNS-22-000079
Severity
CAT II
CCI(s)
- CCI-002699 - Perform verification of the correct operation of organization-defined security functions: when the system is in an organization-defined transitional state; upon command by a user with appropriate privileges; and/or on an organization-defined frequency.
Weight
10
Fix Recommendation
Install an approved DOD system monitoring solution.
Check Contents
This functionality should be performed by an approved and properly configured DOD system monitoring solution.
If all required DOD products are not installed and /or the installed productions are not enabled, this is a finding.
Vulnerability Number
V-259407
Documentable
False
Rule Version
WDNS-22-000079
Severity Override Guidance
This functionality should be performed by an approved and properly configured DOD system monitoring solution.
If all required DOD products are not installed and /or the installed productions are not enabled, this is a finding.
Check Content Reference
M
Target Key
5576