SV-223490r533198_rule
V-223490
SRG-OS-000368-GPOS-00154
ACF2-ES-000720
CAT II
10
Configure the LINKLIST GSO value if specified only contains trusted system data sets.
Specifies one or more partitioned data sets considered part of the system link (SYS1.LINKLIB) during data set access validation.
Only trusted system data sets will be listed. Application libraries will never be included.
Example:
SET C(GSO)
INSERT LINKLST LIBRARY(SYS1.LINKLIB SYS2A.FDR.LOADLIB)
F ACF2,REFRESH(LINKLST)
From the ACF Command screen enter:
SET CONTROL(GSO)
LIST LINKLST
If the GSO LINKLST record values conform to the following requirements, this is not a finding.
Specifies one or more partitioned data sets considered part of the system link (SYS1.LINKLIB) during data set access validation. Only trusted system data sets will be listed. Application libraries will never be included.
Example:
LIBRARY(SYS1.LINKLIB SYS2A.FDR.LOADLIB)
If there is any deviation from the above requirements in the GSO LINKLST record values, this is a finding.
V-223490
False
ACF2-ES-000720
From the ACF Command screen enter:
SET CONTROL(GSO)
LIST LINKLST
If the GSO LINKLST record values conform to the following requirements, this is not a finding.
Specifies one or more partitioned data sets considered part of the system link (SYS1.LINKLIB) during data set access validation. Only trusted system data sets will be listed. Application libraries will never be included.
Example:
LIBRARY(SYS1.LINKLIB SYS2A.FDR.LOADLIB)
If there is any deviation from the above requirements in the GSO LINKLST record values, this is a finding.
M
4100