The IBM z/OS systems requiring data at rest protection must properly employ IBM DS8880 for full disk encryption for classified systems.
DISA Rule
SV-224027r561402_rule
Vulnerability Number
V-224027
Group Title
SRG-OS-000396-GPOS-00176
Rule Version
TSS0-OS-000310
Severity
CAT II
CCI(s)
- CCI-002450 - The information system implements organization-defined cryptographic uses and type of cryptography required for each use in accordance with applicable federal laws, Executive Orders, directives, policies, regulations, and standards.
Weight
10
Fix Recommendation
Employ IBM's DS8880 hardware to ensure full disk encryption.
Check Contents
Determine if IBM's DS880 Disks are in use.
If IBM DS880 Disks are not in use for systems that require data at rest, this is a finding.
Vulnerability Number
V-224027
Documentable
False
Rule Version
TSS0-OS-000310
Severity Override Guidance
Determine if IBM's DS880 Disks are in use.
If IBM DS880 Disks are not in use for systems that require data at rest, this is a finding.
Check Content Reference
M
Target Key
4102
Comments