STIGQter STIGQter: STIG Summary: BIND 9.x Security Technical Implementation Guide Version: 3 Release: 3 Benchmark Date: 01 Jul 2026:

A BIND 9.x implementation operating in a split DNS configuration must be approved by the organization's authorizing official (AO).

DISA Rule

SV-272382r1124041_rule

Vulnerability Number

V-272382

Group Title

SRG-APP-000516-DNS-000500

Rule Version

BIND-9X-001250

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Obtain approval for the split DNS implementation from the AO.

Check Contents

If the BIND 9.x name server is not configured for split DNS, this is not applicable.

Verify that the split DNS implementation has been approved by the organizations AO.

With the assistance of the DNS administrator, obtain the AO's letter of approval for the split DNS implementation.

If the split DNS implementation has not been approved by the organizations AO, this is a finding.

Vulnerability Number

V-272382

Documentable

False

Rule Version

BIND-9X-001250

Severity Override Guidance

If the BIND 9.x name server is not configured for split DNS, this is not applicable.

Verify that the split DNS implementation has been approved by the organizations AO.

With the assistance of the DNS administrator, obtain the AO's letter of approval for the split DNS implementation.

If the split DNS implementation has not been approved by the organizations AO, this is a finding.

Check Content Reference

M

Target Key

5687