STIGQter STIGQter: STIG Summary: Oracle Database 11g Installation STIG Version: 8 Release: 20 Benchmark Date: 28 Jul 2017:

Recovery procedures and technical system features exist to ensure that recovery is done in a secure and verifiable manner.

DISA Rule

SV-28967r1_rule

Vulnerability Number

V-15625

Group Title

DBMS trusted recovery

Rule Version

DG0115-ORACLE11

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Develop, document and implement DBMS recovery procedures and employ technical system features where supported by the DBMS to specify trusted files during DBMS recovery.

Ensure circumstances that can inhibit a trusted recovery are documented and appropriate mitigating procedures have been put in place.

Check Contents

Review DBMS recovery procedures or technical system features to determine if mechanisms exist and are in place to specify use of trusted files during DBMS recovery.

If recovery procedures do not exist or are not sufficient to ensure recovery is done in a secure and verifiable manner, this is a Finding.

If system features exist and are not employed or not employed sufficiently, this is a Finding.

If circumstances that can inhibit a trusted recovery are not documented and appropriate mitigating procedures have not been put in place, this is a Finding.

Vulnerability Number

V-15625

Documentable

False

Rule Version

DG0115-ORACLE11

Severity Override Guidance

Review DBMS recovery procedures or technical system features to determine if mechanisms exist and are in place to specify use of trusted files during DBMS recovery.

If recovery procedures do not exist or are not sufficient to ensure recovery is done in a secure and verifiable manner, this is a Finding.

If system features exist and are not employed or not employed sufficiently, this is a Finding.

If circumstances that can inhibit a trusted recovery are not documented and appropriate mitigating procedures have not been put in place, this is a Finding.

Check Content Reference

M

Responsibility

Database Administrator

Target Key

1368

Comments