Skip to content

For OL 8 systems using Domain Name Servers (DNS) resolution, at least two name servers must be configured.

An XCCDF Rule

Description

To provide availability for name resolution services, multiple redundant name servers are mandated. A failure in name resolution could lead to the failure of security functions requiring name resolution, which may include time synchronization, centralized authentication, and remote system logging.

ID
SV-248634r991589_rule
Version
OL08-00-010680
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

Configure OL 8 to use two or more name servers for DNS resolution. 
 
By default, "NetworkManager" on OL 8 dynamically updates the "/etc/resolv.conf" file with the DNS settings from active "NetworkManager" connection profiles. However, this feature can be disabled to allow manual configurations. 
 
If manually configuring DNS, edit the "/etc/resolv.conf" file to uncomment or add the two or more "nameserver" option lines with the IP address of local authoritative name servers.