SV-224081r561402_rule
V-224081
SRG-OS-000080-GPOS-00048
TSS0-US-000080
CAT II
10
Configure the WRITE or greater access to libraries residing in the /etc/steplib to be limited to system programmers only.
Refer to the pathname from the STEPLIBLIST line in BPXPRMxx member of PARMLIB.
From the ISPF Command shell enter:
ISHELL
on the command line:
on the path name line enter:
/etc/
From the resulting display scroll down to the <stepliblist name> from BPXPRMxx parm.
Enter B for browse on that line.
If ESM data set rules for libraries specified restrict WRITE or greater access to only systems programming personnel, this is not a finding.
If the ESM data set rules for libraries specify that all (i.e., failures and successes) WRITE or greater access will be logged, this is not a finding.
V-224081
False
TSS0-US-000080
Refer to the pathname from the STEPLIBLIST line in BPXPRMxx member of PARMLIB.
From the ISPF Command shell enter:
ISHELL
on the command line:
on the path name line enter:
/etc/
From the resulting display scroll down to the <stepliblist name> from BPXPRMxx parm.
Enter B for browse on that line.
If ESM data set rules for libraries specified restrict WRITE or greater access to only systems programming personnel, this is not a finding.
If the ESM data set rules for libraries specify that all (i.e., failures and successes) WRITE or greater access will be logged, this is not a finding.
M
4102