Skip to content

Infoblox 7.x DNS Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • SRG-APP-000246-DNS-000035

    Group
  • The Infoblox system must be configured to restrict the ability of individuals to use the DNS server to launch Denial of Service (DoS) attacks against other information systems.

    A DoS is a condition where a resource is not available for legitimate users. When this occurs, the organization either cannot accomplish its mission or must operate at degraded capacity. Individual...
    Rule Medium Severity
  • SRG-APP-000247-DNS-000036

    Group
  • SRG-APP-000268-DNS-000039

    Group
  • SRG-APP-000347-DNS-000041

    Group
  • An Infoblox DNS server must strongly bind the identity of the DNS server with the DNS information using DNSSEC.

    Weakly bound credentials can be modified without invalidating the credential; therefore, non-repudiation can be violated. This requirement supports audit requirements that provide organizational p...
    Rule Medium Severity
  • SRG-APP-000348-DNS-000042

    Group
  • The Infoblox system must be configured to provide the means for authorized individuals to determine the identity of the source of the DNS server-provided information.

    Without a means for identifying the individual that produced the information, the information cannot be relied upon. Identifying the validity of information may be delayed or deterred. This requir...
    Rule Medium Severity
  • SRG-APP-000349-DNS-000043

    Group
  • The DNS server implementation must maintain the integrity of information during preparation for transmission.

    Information can be either unintentionally or maliciously disclosed or modified during preparation for transmission, including, for example, during aggregation, at protocol transformation points, an...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules