STIGQter STIGQter: STIG Summary: z/OS BMC MAINVIEW for z/OS for RACF STIG Version: 6 Release: 7 Benchmark Date: 20 Jan 2015:

BMC Mainview for z/OS Resource Class will be defined or active in the ACP.

DISA Rule

SV-33845r2_rule

Vulnerability Number

V-18011

Group Title

ZB000038

Rule Version

ZMVZR038

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

The IAO will ensure that the BMC Mainview for z/OS Resource Class(es) is (are) active.

Use the following commands as an example:

RDEFINE CDT class -
CDTINFO( MAXLENGTH(64) DEFAULTUACC(NONE) -
FIRST(ALPHA) CASE(UPPER) -
OTHER(ALPHA,NUMERIC,NATIONAL,SPECIAL) -
POSIT(301) RACLIST(REQUIRED) -
GENERIC(ALLOWED) GENLIST(ALLOWED) -
OPERATIONS(YES) -
) UACC(NONE)

SETROPTS CLASSACT(CDT) RACLIST(CDT)
SETROPTS RACLIST(CDT) REFRESH

SETROPTS GENERIC(class) GENCMD(class)
SETROPTS CLASSACT(class) RACLIST(class)
SETROPTS RACLIST(class) REFRESH

Check Contents

Refer to the following report produced by the RACF Data Collection:

- RACFCMDS.RPT(SETROPTS)
- DSMON.RPT(RACCDT) - Alternate list of active resource classes

Automated Analysis
Refer to the following report produced by the RACF Data Collection:

- PDI(ZMVZ0038)

Ensure that the BMC Mainview for z/OS resource class(es) is (are) defined and active.

Vulnerability Number

V-18011

Documentable

False

Rule Version

ZMVZR038

Severity Override Guidance

Refer to the following report produced by the RACF Data Collection:

- RACFCMDS.RPT(SETROPTS)
- DSMON.RPT(RACCDT) - Alternate list of active resource classes

Automated Analysis
Refer to the following report produced by the RACF Data Collection:

- PDI(ZMVZ0038)

Ensure that the BMC Mainview for z/OS resource class(es) is (are) defined and active.

Check Content Reference

M

Responsibility

Information Assurance Officer

Target Key

2093

Comments