STIGQter STIGQter: STIG Summary: Redis Enterprise 6.x Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 24 Oct 2024:

Redis Enterprise products must be a version supported by the vendor.

DISA Rule

SV-265880r999546_rule

Vulnerability Number

V-265880

Group Title

SRG-APP-000456-DB-000400

Rule Version

RD6X-00-007950

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Remove or decommission all unsupported software products.

Upgrade unsupported DBMS or unsupported components to a supported version of the product.

Check Contents

Review the system documentation and interview the database administrator. Identify all database software components.

Review the version and release information.
1. Log in to the adminUI console as an authorized user.
2. Navigate to the cluster tab and select configuration.
3. Check the version number next to Redis Labs Enterprise Cluster.

Access the below Redis website or use other means to verify the version is still supported:
https://docs.redislabs.com/latest/rs/administering/product-lifecycle

If the DBMS or any of the software components are not supported by the vendor, this is a finding.

Vulnerability Number

V-265880

Documentable

False

Rule Version

RD6X-00-007950

Severity Override Guidance

Review the system documentation and interview the database administrator. Identify all database software components.

Review the version and release information.
1. Log in to the adminUI console as an authorized user.
2. Navigate to the cluster tab and select configuration.
3. Check the version number next to Redis Labs Enterprise Cluster.

Access the below Redis website or use other means to verify the version is still supported:
https://docs.redislabs.com/latest/rs/administering/product-lifecycle

If the DBMS or any of the software components are not supported by the vendor, this is a finding.

Check Content Reference

M

Target Key

5443