STIGQter STIGQter: STIG Summary: IBM z/VM Using CA VM:Secure Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 27 Apr 2018:

CA VM:Secure product Rules Facility must be installed and operating.

DISA Rule

SV-93547r1_rule

Vulnerability Number

V-78841

Group Title

SRG-OS-000001-GPOS-00001

Rule Version

IBMZ-VM-000010

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Ensure the Rules Facility is installed and the Product Config file contains an “ACCESS RULES” statement.

Check Contents

Verify an “ACCESS RULE” record exists on the system using the following command:

VMSECURE CONFIG PRODUCT

If there is no “ACCESS RULE” record, this is a finding.

Verify that CA VM:SECURE RULES can be added using the following command:

VMSECURE RULES USER

If a rules file does not open, this is a finding.

Vulnerability Number

V-78841

Documentable

False

Rule Version

IBMZ-VM-000010

Severity Override Guidance

Verify an “ACCESS RULE” record exists on the system using the following command:

VMSECURE CONFIG PRODUCT

If there is no “ACCESS RULE” record, this is a finding.

Verify that CA VM:SECURE RULES can be added using the following command:

VMSECURE RULES USER

If a rules file does not open, this is a finding.

Check Content Reference

M

Target Key

3211

Comments