STIGQter STIGQter: STIG Summary: IBM z/VM Using CA VM:Secure Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 27 Apr 2018:

All IBM z/VM TCP/IP servers must be configured for SSL/TLS connection.

DISA Rule

SV-93647r1_rule

Vulnerability Number

V-78941

Group Title

SRG-OS-000425-GPOS-00189

Rule Version

IBMZ-VM-001070

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the “SSLSERVERID” statement to force auto logging of an SSL server before all other servers in the “AUTOLOG” list.

Check Contents

Determine SSL/TLS capability.

Examine the TCP/IP config file.

If the “SSLSERVERID” statement identifies at least one userID for SSL server, this is not a finding.

Vulnerability Number

V-78941

Documentable

False

Rule Version

IBMZ-VM-001070

Severity Override Guidance

Determine SSL/TLS capability.

Examine the TCP/IP config file.

If the “SSLSERVERID” statement identifies at least one userID for SSL server, this is not a finding.

Check Content Reference

M

Target Key

3211

Comments