STIGQter STIGQter: STIG Summary: Mainframe Product Security Requirements Guide Version: 1 Release: 4 Benchmark Date: 24 Jan 2020:

The Mainframe Product must protect the confidentiality and integrity of all information at rest.

DISA Rule

SV-82953r1_rule

Vulnerability Number

V-68463

Group Title

SRG-APP-000231-MFP-000302

Rule Version

SRG-APP-000231-MFP-000302

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Mainframe Product to protect the product system and user files for dataset/resources from unauthorized access in accordance with applicable access control policies.

This can be accomplished using an ESM.

Configure the ESM to restrict access to authorized users only in accordance with applicable access control policies.

Check Contents

Examine installation and configuration settings.

Verify that the Mainframe Product identifies product system-related files and user files for dataset/resource protection.

If the Mainframe Product is not configured to protect product system and user files for dataset/resources from unauthorized access, this is a finding.

If an external security manager (ESM) is in use, examine ESM configuration and rules.

If the configuration and rules do not protect product system-related files and user files for dataset resources from unauthorized access, this is a finding.

Vulnerability Number

V-68463

Documentable

False

Rule Version

SRG-APP-000231-MFP-000302

Severity Override Guidance

Examine installation and configuration settings.

Verify that the Mainframe Product identifies product system-related files and user files for dataset/resource protection.

If the Mainframe Product is not configured to protect product system and user files for dataset/resources from unauthorized access, this is a finding.

If an external security manager (ESM) is in use, examine ESM configuration and rules.

If the configuration and rules do not protect product system-related files and user files for dataset resources from unauthorized access, this is a finding.

Check Content Reference

M

Target Key

3061

Comments