STIGhub
STIGs
RMF Controls
Compare
← SC-20 (2) — Secure Name/Address Resolution Service (Authoritative Source)
CCI-002464
Definition
Provide data integrity protection artifacts for internal name/address resolution queries.
Parent Control
SC-20 (2)
Secure Name/Address Resolution Service (Authoritative Source)
System and Communications Protection
Linked STIG Checks (7)
V-272417
CAT I
A BIND 9.x server implementation must maintain the integrity and confidentiality of DNS information while it is being prepared for transmission, in transmission, and in use and must perform integrity verification and data origin verification for all DNS information.
BIND 9.x Security Technical Implementation Guide
V-205207
CAT II
A DNS server implementation must provide data integrity protection artifacts for internal name/address resolution queries.
Domain Name System (DNS) Security Requirements Guide
V-265982
CAT II
An authoritative name server must be configured to enable DNSSEC Resource Records.
F5 BIG-IP TMOS DNS Security Technical Implementation Guide
V-214189
CAT II
A DNS server implementation must provide data integrity protection artifacts for internal name/address resolution queries.
Infoblox 7.x DNS Security Technical Implementation Guide
V-233894
CAT II
The Infoblox DNS service member must provide data integrity protection artifacts for internal name/address resolution queries.
Infoblox 8.x DNS Security Technical Implementation Guide
V-215613
CAT II
The Windows 2012 DNS Server must use DNSSEC data within queries to confirm data origin to DNS resolvers.
Microsoft Windows 2012 Server Domain Name System Security Technical Implementation Guide
V-259376
CAT II
The Windows DNS Server must use DNSSEC data within queries to confirm data origin to DNS resolvers.
Microsoft Windows Server Domain Name System (DNS) Security Technical Implementation Guide