STIGQter STIGQter: STIG Summary: IBM Hardware Management Console (HMC) STIG Version: 1 Release: 5 Benchmark Date: 20 Jan 2015:

Hardware Management Console management must be accomplished by using the out-of-band or direct connection method.

DISA Rule

SV-30043r2_rule

Vulnerability Number

V-24373

Group Title

HMC0200

Rule Version

HMC0200

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

The System Administrator will work with the NSO to see that the Hardware Management Console management is set up with encryption on an out-of band network.

Check Contents

The System Administrator will validate that the Hardware Management Console management connection will use TCP/IP with encryption on an out-of-band network.

If the Hardware Management Console management connection does not use TCP/IP with encryption on an out-of-band network then this is a FINDING.

Vulnerability Number

V-24373

Documentable

False

Rule Version

HMC0200

Severity Override Guidance

The System Administrator will validate that the Hardware Management Console management connection will use TCP/IP with encryption on an out-of-band network.

If the Hardware Management Console management connection does not use TCP/IP with encryption on an out-of-band network then this is a FINDING.

Check Content Reference

M

Responsibility

Systems Programmer

Target Key

1891

Comments