STIGQter STIGQter: STIG Summary: IBM MQ Appliance V9.0 AS Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 05 Jun 2017:

The MQ Appliance messaging server must automatically terminate a SSH user session after organization-defined conditions or trigger events requiring a session disconnect.

DISA Rule

SV-89479r1_rule

Vulnerability Number

V-74805

Group Title

SRG-APP-000295-AS-000263

Rule Version

MQMH-AS-000680

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

For the CLI used by the administrator, log on to the MQ Appliance CLI as a privileged user.

Enter:
co
rbm
cli-timeout 600
exit
write mem
y

Check Contents

To access the MQ Appliance CLI, enter:
mqcli

show rbm

Verify that the cli-timeout displays the approved timeout value of 600 seconds (10 minutes) or less.

If it does not, this is a finding.

Vulnerability Number

V-74805

Documentable

False

Rule Version

MQMH-AS-000680

Severity Override Guidance

To access the MQ Appliance CLI, enter:
mqcli

show rbm

Verify that the cli-timeout displays the approved timeout value of 600 seconds (10 minutes) or less.

If it does not, this is a finding.

Check Content Reference

M

Target Key

3239

Comments