Skip to content

Latest commit

 

History

History
18 lines (13 loc) · 810 Bytes

dns-security-signing-algorithm.md

File metadata and controls

18 lines (13 loc) · 810 Bytes

CloudSploit

GOOGLE / DNS / DNS Security Signing Algorithm

Quick Info

Plugin Title DNS Security Signing Algorithm
Cloud GOOGLE
Category DNS
Description Ensures that DNS Security is not using the RSASHA1 algorithm for key or zone signing
More Info DNS Security is a feature that authenticates all responses to domain name lookups. This prevents attackers from committing DNS hijacking or man in the middle attacks.
GOOGLE Link https://cloud.google.com/dns/docs/dnssec
Recommended Action Ensure that all managed zones using DNSSEC are not using the RSASHA1 algorithm for key or zone signing.

Detailed Remediation Steps