The platform on which the name server software is hosted must only run processes and services needed to support the BIND 9.x implementation.
Overview
Finding ID
Version
Rule ID
IA Controls
Severity
V-207534
BIND-9X-001002
SV-207534r879887_rule
Medium
Description
Hosts that run the name server software should not provide any other services. Unnecessary services running on the DNS server can introduce additional attack vectors leading to the compromise of an organization’s DNS architecture.