SQL2-00-017700 - SQL Server user-level information must be backed up based on a defined frequency.

Information

SQL Server backups are a critical step in maintaining data assurance and availability.

User-level information is data generated by information system and/or application users. In order to assure availability of this data in the event of a system failure, DoD organizations are required to ensure user generated data is backed up at a defined frequency. This includes data stored on file systems, within SQL Server or within any other storage media.

Applications performing backups must be capable of backing up user-level information per the DoD defined frequency.

Databases that do not backup information regularly risk the loss of that information in the event of a system failure.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Deploy a backup solution to perform backups as per organizationally defined Backup Policy.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_SQL_Server_2012_V1R20_STIG.zip

Item Details

Category: CONTINGENCY PLANNING

References: 800-53|CP-9a., CAT|II, CCI|CCI-000535, Rule-ID|SV-53284r2_rule, STIG-ID|SQL2-00-017700, Vuln-ID|V-40930

Plugin: MS_SQLDB

Control ID: e7881b3cf47cc326d4ef012ba257f37cc621572048a6beafabfcef6227e05ad4