STIGQter STIGQter: STIG Summary: IBM z/OS ACF2 Security Technical Implementation Guide Version: 8 Release: 2 Benchmark Date: 23 Apr 2021:

The CA-ACF2 PSWD GSO record values for MAXTRY and PASSLMT must be properly set.

DISA Rule

SV-223462r533198_rule

Vulnerability Number

V-223462

Group Title

SRG-OS-000329-GPOS-00128

Rule Version

ACF2-ES-000430

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the GSO option "MAXTRY" to equal "3".
Configure the GSO option "PASSLMT" to equal "3".

Check Contents

From an ACF command screen enter:
SET CONTROL(GSO)
SHOW PSwdopts

If "MAXTRY" is set to "3", this is not a finding.

If "PASSLMT" is set to "3", this is not a finding.

Vulnerability Number

V-223462

Documentable

False

Rule Version

ACF2-ES-000430

Severity Override Guidance

From an ACF command screen enter:
SET CONTROL(GSO)
SHOW PSwdopts

If "MAXTRY" is set to "3", this is not a finding.

If "PASSLMT" is set to "3", this is not a finding.

Check Content Reference

M

Target Key

4100

Comments