UCF STIG Viewer Logo

Backup / Disaster Recovery oriented applications must be capable of backing up user-level information per a defined frequency.


Overview

Finding ID Version Rule ID IA Controls Severity
V-35397 SRG-APP-000145-MAPP-NA SV-46684r1_rule Medium
Description
Information system backup is a critical step in maintaining data assurance and availability. User-level information is data generated by information system and/or application users. In order to assure availability of this data in the event of a system failure, DoD organizations are required to ensure user generated data is backed up at a defined frequency. This includes data stored on file systems, within databases or within any other storage media. Applications performing backups must be capable of backing up user-level information per the DoD defined frequency. Rationale for non-applicability: Mobile OSs implement application sandboxing, which precludes the ability of a backup application to backup data from other applications. Some data in designated OS resources (e.g., the contact database) may be accessible to all applications, in which case there is no issue as to whether an application can back up the data on an organization-defined frequency.
STIG Date
Mobile Application Security Requirements Guide 2013-01-04

Details

Check Text ( C-43753r1_chk )
This requirement is NA for the MAPP SRG.
Fix Text (F-39942r1_fix)
The requirement is NA. No fix is required.