IBM z/OS BUFUSEWARN in the SMFPRMxx must be properly set.
DISA Rule
SV-223772r604139_rule
Vulnerability Number
V-223772
Group Title
SRG-OS-000343-GPOS-00134
Rule Version
RACF-OS-000160
Severity
CAT II
CCI(s)
- CCI-001855 - The information system provides a warning to organization-defined personnel, roles, and/or locations within an organization-defined time period when allocated audit record storage volume reaches an organization-defined percentage of repository maximum audit record storage capacity.
- CCI-001858 - The information system provides a real-time alert in an organization-defined real-time period to organization-defined personnel, roles, and/or locations when organization-defined audit failure events requiring real-time alerts occur.
- CCI-000139 - The information system alerts designated organization-defined personnel or roles in the event of an audit processing failure.
Weight
10
Fix Recommendation
Configure the BUFUSEWARN statement in SMFPRMxx to "75" (75%) or less.
Check Contents
Refer to IEASYS00 member in SYS1.PARMLIB Concatenation. Determine proper SMFPRMxx member in SYS1.PARMLIB.
If BUFUSEWARN is set for "75" (75%) or less, this is not a finding.
Vulnerability Number
V-223772
Documentable
False
Rule Version
RACF-OS-000160
Severity Override Guidance
Refer to IEASYS00 member in SYS1.PARMLIB Concatenation. Determine proper SMFPRMxx member in SYS1.PARMLIB.
If BUFUSEWARN is set for "75" (75%) or less, this is not a finding.
Check Content Reference
M
Target Key
4101
Comments