CCI-001179
Provides the means to indicate the security status of child zones, when operating as part of a distributed, hierarchical namespace.
The Infoblox DNS server implementation must provide the means to indicate the security status of child zones.
1 rule found Severity: Medium

The validity period for the Resource Record Signatures (RRSIGs) covering the Delegation Signer (DS) RR for a zone's delegated children must be no less than two days and no more than one week.
1 rule found Severity: Medium

2 rules found Severity: Medium

1 rule found Severity: Medium

The Windows 2012 DNS Server must be configured with the DS RR carrying the signature for the RR that contains the public key of the child zone.
1 rule found Severity: Medium

A BIND 9.x server implementation must provide the means to indicate the security status of child zones.
1 rule found Severity: Medium

The BIND 9.x server validity period for the RRSIGs covering the DS RR for zones delegated children must be no less than two days and no more than one week.
1 rule found Severity: Medium

The validity period for the RRSIGs covering the DS RR for a zones delegated children must be no less than two days and no more than one week.
2 rules found Severity: Medium

The validity period for the Resource Record Signatures (RRSIGs) covering the Delegation Signer (DS) Resource Record (RR) for a zone's delegated children must be no less than two days and no more than one week.
1 rule found Severity: Medium
