DoD STIGs – V-32549

Overview:

Title: The DBMS must protect against or limit the effects of the organization defined types of Denial of Service (DoS) attacks.

Vulnerability ID: V-32549

STIG ID:

IA Controls: None

Severity: medium

Description: A variety of technologies exist to limit, or in some cases, eliminate the effects of DoS attacks. For example, boundary protection devices can filter certain types of packets to protect devices on an organization’s internal network from being directly affected by DoS attacks.

Employing increased capacity and bandwidth combined with service redundancy may reduce the susceptibility to some DoS attacks.

Some of the ways databases can limit their exposure to DoS attacks are through limiting the number of connections that can be opened by a single user and database clustering.

Check Text: Review DBMS settings to verify the DBMS implements measures to limit the effects of the organization defined types of Denial of Service (DoS) attacks. If measures have not been implemented, this is a finding.

Fix Text: Implement measures to limit the effects of organization defined types of Denial of Service attacks.

[divider]

Interpreting V-32549:

Coming Soon!

Return to the DoD STIGs – Database Security Requirements Guide

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.