CCI|CCI-002466

Title

The information system requests data integrity verification on the name/address resolution responses the system receives from authoritative sources.

Reference Item Details

Category: 2013

Audit Items

View all Reference Audit Items

NamePluginAudit Name
Big Sur - Secure Name Address Resolution ServiceUnixNIST macOS Big Sur v1.4.0 - 800-53r4 Low
Big Sur - Secure Name Address Resolution ServiceUnixNIST macOS Big Sur v1.4.0 - 800-53r5 Low
Big Sur - Secure Name Address Resolution ServiceUnixNIST macOS Big Sur v1.4.0 - 800-53r5 High
Big Sur - Secure Name Address Resolution ServiceUnixNIST macOS Big Sur v1.4.0 - 800-53r4 High
Big Sur - Secure Name Address Resolution ServiceUnixNIST macOS Big Sur v1.4.0 - CNSSI 1253
Big Sur - Secure Name Address Resolution ServiceUnixNIST macOS Big Sur v1.4.0 - 800-53r5 Moderate
Big Sur - Secure Name Address Resolution ServiceUnixNIST macOS Big Sur v1.4.0 - 800-53r4 Moderate
Big Sur - Secure Name Address Resolution ServiceUnixNIST macOS Big Sur v1.4.0 - All Profiles
BIND-9X-001200 - A BIND 9.x server implementation must maintain the integrity and confidentiality of DNS information while it is being prepared for transmission, in transmission, and in use and t must perform integrity verification and data origin verification for all DNS information - dnssec-enableUnixDISA BIND 9.x STIG v2r2
BIND-9X-001200 - A BIND 9.x server implementation must maintain the integrity and confidentiality of DNS information while it is being prepared for transmission, in transmission, and in use and t must perform integrity verification and data origin verification for all DNS information - KSKUnixDISA BIND 9.x STIG v2r2
BIND-9X-001200 - A BIND 9.x server implementation must maintain the integrity and confidentiality of DNS information while it is being prepared for transmission, in transmission, and in use and t must perform integrity verification and data origin verification for all DNS information - zoneUnixDISA BIND 9.x STIG v2r2
BIND-9X-001200 - A BIND 9.x server implementation must maintain the integrity and confidentiality of DNS information while it is being prepared for transmission, in transmission, and in use and t must perform integrity verification and data origin verification for all DNS information - ZSKUnixDISA BIND 9.x STIG v2r2
Catalina - Secure Name Address Resolution ServiceUnixNIST macOS Catalina v1.5.0 - 800-53r4 Low
Catalina - Secure Name Address Resolution ServiceUnixNIST macOS Catalina v1.5.0 - 800-53r5 Moderate
Catalina - Secure Name Address Resolution ServiceUnixNIST macOS Catalina v1.5.0 - All Profiles
Catalina - Secure Name Address Resolution ServiceUnixNIST macOS Catalina v1.5.0 - 800-53r5 High
Catalina - Secure Name Address Resolution ServiceUnixNIST macOS Catalina v1.5.0 - CNSSI 1253
Catalina - Secure Name Address Resolution ServiceUnixNIST macOS Catalina v1.5.0 - 800-53r4 High
Catalina - Secure Name Address Resolution ServiceUnixNIST macOS Catalina v1.5.0 - 800-53r5 Low
Catalina - Secure Name Address Resolution ServiceUnixNIST macOS Catalina v1.5.0 - 800-53r4 Moderate
Monterey - Secure Name Address Resolution ServiceUnixNIST macOS Monterey v1.0.0 - 800-53r4 Moderate
Monterey - Secure Name Address Resolution ServiceUnixNIST macOS Monterey v1.0.0 - 800-53r4 Low
Monterey - Secure Name Address Resolution ServiceUnixNIST macOS Monterey v1.0.0 - 800-53r4 High
Monterey - Secure Name Address Resolution ServiceUnixNIST macOS Monterey v1.0.0 - 800-53r5 High
Monterey - Secure Name Address Resolution ServiceUnixNIST macOS Monterey v1.0.0 - 800-53r5 Low
Monterey - Secure Name Address Resolution ServiceUnixNIST macOS Monterey v1.0.0 - All Profiles
Monterey - Secure Name Address Resolution ServiceUnixNIST macOS Monterey v1.0.0 - CNSSI 1253
Monterey - Secure Name Address Resolution ServiceUnixNIST macOS Monterey v1.0.0 - 800-53r5 Moderate
WDNS-SC-000015 - The Windows DNS secondary server must request data integrity verification from the primary server when requesting name/address resolution.WindowsDISA Microsoft Windows 2012 Server DNS STIG v2r5