SV-89583r1_rule
V-74909
SRG-APP-000089-AS-000050
MQMH-AS-001110
CAT II
10
The following events may be logged for each queue manager on the MQ Appliance:
Authority (AUTHOREV), Inhibit (INHIBITEV), Local (LOCALEV), Remote (REMOTEEV), Start and stop (STRSTPEV), Performance (PERFMEV), Command (CMDEV), Channel (CHLEV), Channel auto definition (CHADEV), SSL (SSLEV), Configuration (CONFIGEV)
To enable logging for a queue manager, enter the following from the MQ Appliance CLI for each event for which you wish to enable logging:
To access the MQ Appliance CLI, enter the following:
mqcli
runmqsc [queue mgr name]
ALTER QMGR [event name](ENABLED)
end
Note: Any MQ monitoring solution that connects to MQ as a client may be used to monitor event queues.
Establish an SSH command line session as an admin user.
To access the MQ Appliance CLI, enter:
mqcli
To identify the queue managers, enter:
dspmq
For each queue manager identified, run the command:
runmqsc [queue name]
DIS QMGR EVENT
A list of all events will be displayed along with an indication of if event logging is enabled. The events are as follows:
Authority: AUTHOREV, Inhibit: INHIBITEV, Local: LOCALEV, Remote: REMOTEEV, Start and stop: STRSTPEV, Performance: PERFMEV, Command: CMDEV, Channel: CHLEV, Channel auto definition: CHADEV, SSL: SSLEV, Configuration: CONFIGEV
If and required event logging is not enabled for running queue managers, this is a finding.
V-74909
False
MQMH-AS-001110
Establish an SSH command line session as an admin user.
To access the MQ Appliance CLI, enter:
mqcli
To identify the queue managers, enter:
dspmq
For each queue manager identified, run the command:
runmqsc [queue name]
DIS QMGR EVENT
A list of all events will be displayed along with an indication of if event logging is enabled. The events are as follows:
Authority: AUTHOREV, Inhibit: INHIBITEV, Local: LOCALEV, Remote: REMOTEEV, Start and stop: STRSTPEV, Performance: PERFMEV, Command: CMDEV, Channel: CHLEV, Channel auto definition: CHADEV, SSL: SSLEV, Configuration: CONFIGEV
If and required event logging is not enabled for running queue managers, this is a finding.
M
3239