Check: RHEL-06-000505
Red Hat Enterprise Linux 6 STIG:
RHEL-06-000505
(in versions v2 r2 through v1 r14)
Title
The operating system must conduct backups of system-level information contained in the information system per organization defined frequency to conduct backups that are consistent with recovery time and recovery point objectives. (Cat II impact)
Discussion
Operating system backup is a critical step in maintaining data assurance and availability. System-level information includes system-state information, operating system and application software, and licenses. Backups must be consistent with organizational recovery time and recovery point objectives.
Check Content
Ask an administrator if a process exists to back up OS data from the system, including configuration data. If such a process does not exist, this is a finding.
Fix Text
Procedures to back up OS data from the system must be established and executed. The Red Hat operating system provides utilities for automating such a process. Commercial and open-source products are also available. Implement a process whereby OS data is backed up from the system in accordance with local policies.
Additional Identifiers
Rule ID: SV-218089r603264_rule
Vulnerability ID: V-218089
Group Title: SRG-OS-000480
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-000366 |
Implement the security configuration settings. |
CCI-000537 |
Conduct backups of system-level information contained in the system per organization-defined frequency that is consistent with recovery time and recovery point objectives. |