Infoblox Grid configuration must be backed up on a regular basis.
Overview
| Finding ID | Version | Rule ID | IA Controls | Severity |
| V-233884 | IDNS-8X-400026 | SV-233884r961863_rule | CCI-000366 | medium |
| Description | ||||
| The Infoblox Grid Master is the central point of management within an Infoblox Grid. The Grid Master retains a full copy of the configuration used for the entire Grid. In the event of system failure, a configuration backup must be preserved. An Infoblox Grid member may also be configured as a Grid Master Candidate, which is synchronized to the Grid Master. The Grid Master Candidate can be promoted in the event of system failure on the Grid Master. | ||||
| STIG | Date | |||
| Infoblox 8.x DNS Security Technical Implementation Guide | 2025-03-11 | |||
Related Frameworks
4 paths across 3 frameworks
Related Frameworks
NIST 800-531 mapping
CM-6
1.00
- DISA · V1R2 · disa_xccdf · related
- DISA · 2025-01-23 · disa_cci_list · equivalent
NIST 800-1712 mappings
3.4.1
1.00
- DISA · V1R2 · disa_xccdf · related
- DISA · 2025-01-23 · disa_cci_list · equivalent
- NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
3.4.2
1.00
- DISA · V1R2 · disa_xccdf · related
- DISA · 2025-01-23 · disa_cci_list · equivalent
- NIST · Rev 2 (Feb 2020, errata Jan 2021) · nist_800_171_app_d · equivalent
CCI1 mapping
CCI-000366
1.00
- DISA · V1R2 · disa_xccdf · related
Details
Check Text (C-233884r961863_chk)
1. Navigate to Grid >> Grid Manager >> Members tab.
2. In the toolbar, click the drop-down menu for "Backup", "Schedule Backup".
3. Verify configuration of a remote backup option (TFTP, FTP, or SCP). Review the existence of backup files on the remote system.
If a remote backup system is not configured, or a local backup procedure is not documented, this is a finding.
If no remote or local backup is configured, but the Grid contains a Grid Master candidate, the severity of the finding is reduced.
Fix Text (F-37034r611173_fix)
1. Navigate to Grid >> Grid Manager >> Members tab.
2. In the toolbar, click the drop-down menu for "Backup", "Schedule Backup". Configure remote backup to TFTP, FTP, or SCP.
3. When complete, click "Save & Close" to save the changes and exit the "Properties" screen.
4. Perform a service restart if necessary.
5. Review the existence of backup files on the remote system.