STIGhubSTIGhub
STIGhub— A free STIG search and compliance tool·STIGs updated 12 hours ago
Powered by Pylon·Privacy·Terms·Feedback·© 2026 Beacon Cloud Solutions, Inc.
← Back to Infoblox NIOS 9.x Security Technical Implementation Guide

V-285269

CAT I (High)

The Infoblox NIOS must be the appropriate version.

Rule ID

SV-285269r1258807_rule

STIG

Infoblox NIOS 9.x Security Technical Implementation Guide

Version

V1R1

CCIs

CCI-002605

Discussion

Each newer version of the name server software, especially the BIND software, generally is devoid of vulnerabilities found in earlier versions because it has design changes incorporated to address those vulnerabilities. These vulnerabilities have been exploited (i.e., some form of attack was launched), and sufficient information has been generated with respect to the nature of those exploits. The latest version of name server software is the safest version. Even if the software is the latest version, it is not safe to run it in default mode. The security administrator should always configure the software to run in the recommended secure mode of operation after becoming familiar with the new security settings for the latest version.

Check Content

Verify Infoblox components are running with the current approved version.

1. Navigate to the Grid >> Upgrade tab to show all members are at the current version. 
2. Use the Infoblox support portal to obtain current version information. 

If the Infoblox NIOS version is not currently under support maintenance or is not at the current approved version level, this is a finding.

Fix Text

Refer to the Infoblox NIOS Administrator Guide if necessary. 

1. Log on to the Infoblox support portal and download the current approved Long Term Support version of NIOS for Federal Systems. 
2. Perform a Grid upgrade.