SV-223849r604139_rule
V-223849
SRG-OS-000080-GPOS-00048
RACF-US-000120
CAT II
10
Configure WRITE or greater access to libraries residing in the /etc/steplib to be limited to system programmers only.
Refer to the pathname from the STEPLIBLIST line in BPXPRMxx member of PARMLIB.
From the ISPF Command Shell enter:
ISHELL
On the command line:
on the path name line enter:
/etc/
From the resulting display scroll down to the <stepliblist name> from BPXPRMxx parm.
Enter B for browse on that line.
If ESM data set rules for libraries specified restrict WRITE or greater access to only systems programming personnel, this is not a finding.
If the ESM data set rules for libraries specify that all (i.e., failures and successes) WRITE or greater access will be logged, this is not a finding.
V-223849
False
RACF-US-000120
Refer to the pathname from the STEPLIBLIST line in BPXPRMxx member of PARMLIB.
From the ISPF Command Shell enter:
ISHELL
On the command line:
on the path name line enter:
/etc/
From the resulting display scroll down to the <stepliblist name> from BPXPRMxx parm.
Enter B for browse on that line.
If ESM data set rules for libraries specified restrict WRITE or greater access to only systems programming personnel, this is not a finding.
If the ESM data set rules for libraries specify that all (i.e., failures and successes) WRITE or greater access will be logged, this is not a finding.
M
4101