Check: SRG-APP-000815-DNS-000160
Domain Name System (DNS) SRG:
SRG-APP-000815-DNS-000160
(in version v4 r1)
Title
The DNS server implementation must require users to be individually authenticated before granting access to the shared accounts or resources. (Cat II impact)
Discussion
Individual authentication prior to shared group authentication mitigates the risk of using group accounts or authenticators.
Check Content
Verify the DNS server implementation is configured to require users to be individually authenticated before granting access to the shared accounts or resources. If the DNS server implementation is not configured to require users to be individually authenticated before granting access to the shared accounts or resources, this is a finding.
Fix Text
Configure the DNS server implementation to require users to be individually authenticated before granting access to the shared accounts or resources.
Additional Identifiers
Rule ID: SV-263629r982523_rule
Vulnerability ID: V-263629
Group Title: SRG-APP-000815
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-004045 |
Require users to be individually authenticated before granting access to the shared accounts or resources. |
Controls
Number | Title |
---|---|
No controls are assigned to this check |