WDNS-AU-000016 - The Windows 2012 DNS Servers audit records must be backed up at least every seven days onto a different system or system component than the system or component being audited.

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Protection of log data includes assuring log data is not accidentally lost or deleted. Backing up audit records to a different system or onto separate media than the system being audited on a defined frequency helps to assure, in the event of a catastrophic system failure, the audit records will be retained.

This helps to ensure a compromise of the information system being audited does not also result in a compromise of the audit records.

This requirement only applies to applications that have a native backup capability for audit records. Operating system backup requirements cover applications that do not provide native backup functions.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Document and implement a backup policy to back up the DNS Server's audit records at least every seven days.

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_MS_Windows_2012_Server_DNS_V1R14_STIG.zip

Item Details

References: CAT|II, CCI|CCI-001348, Rule-ID|SV-73003r4_rule, STIG-ID|WDNS-AU-000016, Vuln-ID|V-58573

Plugin: Windows

Control ID: 50fc305cb461a0bb835debed907265f878a960cbf4e3b8324c624ad727c321e7