STIGQter STIGQter: STIG Summary: Microsoft DotNet Framework 4.0 STIG Version: 1 Release: 9 Benchmark Date: 25 Oct 2019: CAS and policy configuration files must be backed up.

DISA Rule

SV-7452r2_rule

Vulnerability Number

V-7069

Group Title

APPNET0055 CAS and Policy Config File Backups

Rule Version

APPNET0055

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

All CAS policy and policy configuration files must be included in the system backup.

All CAS policy and policy configuration files must be backed up prior to migration, deployment, and reconfiguration.

CAS policy configuration files must be included in disaster recovery plan documentation.

Check Contents

Ask the System Administrator if all CAS policy and policy configuration files are included in the system backup. If they are not, this is a finding.

Ask the System Administrator if the policy and configuration files are backed up prior to migration, deployment, and reconfiguration. If they are not, this is a finding.

Ask the System Administrator for documentation that shows CAS Policy configuration files are backed up as part of a disaster recovery plan. If they have no documentation proving the files are backed up, this is a finding.

Vulnerability Number

V-7069

Documentable

False

Rule Version

APPNET0055

Severity Override Guidance

Ask the System Administrator if all CAS policy and policy configuration files are included in the system backup. If they are not, this is a finding.

Ask the System Administrator if the policy and configuration files are backed up prior to migration, deployment, and reconfiguration. If they are not, this is a finding.

Ask the System Administrator for documentation that shows CAS Policy configuration files are backed up as part of a disaster recovery plan. If they have no documentation proving the files are backed up, this is a finding.

Check Content Reference

M

Responsibility

System Administrator

Target Key

2030

Comments