Skip to content

The host running a BIND 9.x implementation must use a dedicated management interface in order to separate management traffic from DNS specific traffic.

An XCCDF Rule

Description

<VulnDiscussion>Providing Out-Of-Band (OOB) management is the best first step in any management strategy. No production traffic resides on an out-of-band network. The biggest advantage to implementation of an OOB network is providing support and maintenance to the network that has become degraded or compromised. During an outage or degradation period the in band management link may not be available.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>

ID
SV-207537r612253_rule
Severity
Medium
References
Updated



Remediation - Manual Procedure

On the host machine, configure an interface that is dedicated to management traffic.

Restart the host machine.