Infoblox Grid configuration must be backed up on a regular basis.
Overview
| Finding ID | Version | Rule ID | IA Controls | Severity |
| V-214223 | IDNS-7X-000980 | SV-214223r612370_rule | CCI-000366 | medium |
| Description | ||||
| The Infoblox Grid Master is the central point of management within an Infoblox Grid. The Grid Master retains a full copy of the configuration used for the entire Grid. In the event of system failure, a configuration backup must be preserved. An Infoblox member may also be configured as a Grid Master Candidate which is a synchronized to the Grid Master. The Candidate can be promoted in the event of system failure on the Grid Master. | ||||
| STIG | Date | |||
| Infoblox 7.x DNS Security Technical Implementation Guide | 2020-12-10 | |||
Related Frameworks
4 paths across 3 frameworks
Related Frameworks
NIST 800-531 mapping
CM-6
1.00
- DISA · 2 · disa_xccdf · related
- DISA · 2025-01-23 · disa_cci_list · equivalent
NIST 800-1712 mappings
3.4.1
1.00
- DISA · 2 · disa_xccdf · related
- DISA · 2025-01-23 · disa_cci_list · equivalent
- NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
3.4.2
1.00
- DISA · 2 · disa_xccdf · related
- DISA · 2025-01-23 · disa_cci_list · equivalent
- NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
CCI1 mapping
CCI-000366
1.00
- DISA · 2 · disa_xccdf · related
Details
Check Text (C-214223r612370_chk)
Navigate to Grid >> Grid Manager >> Members tab.
In the toolbar click the drop-down menu for "Backup", "Schedule Backup".
Verify configuration of a remote backup option (TFTP, FTP, or SCP).
Review the existence of backup files on the remote system.
If a remote backup system is not configured, or a local backup procedure is not documented, this is a finding.
If no remote or local backup is configured, but the Grid contains a Grid Master candidate, the severity of the finding is reduced.
Fix Text (F-15436r295933_fix)
Navigate to Grid >> Grid Manager >> Members tab.
In the toolbar click the drop-down menu for "Backup", "Schedule Backup".
Configure remote backup to TFTP, FTP, or SCP.
When complete, click "Save & Close" to save the changes and exit the "Properties" screen.
Perform a service restart if necessary.
Review the existence of backup files on the remote system.