STIGQter STIGQter: STIG Summary: Mainframe Product Security Requirements Guide Version: 3 Release: 5 Benchmark Date: 01 Jul 2026:

Mainframe Products must implement cryptographic mechanisms to protect the confidentiality of nonlocal maintenance and diagnostic communications.

DISA Rule

SV-205580r961557_rule

Vulnerability Number

V-205580

Group Title

SRG-APP-000412

Rule Version

SRG-APP-000412-MFP-000261

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Mainframe Product to use FIPS 140 compliant modules to protect the confidentiality of nonlocal maintenance and diagnostic communications.

Check Contents

If the Mainframe Product has no function or capability for nonlocal maintenance, this is not applicable.

Examine installation and configuration settings.

If the Mainframe Product does not use FIPS 140 compliant modules to protect the confidentiality of nonlocal maintenance and diagnostic communications, this is a finding.

Vulnerability Number

V-205580

Documentable

False

Rule Version

SRG-APP-000412-MFP-000261

Severity Override Guidance

If the Mainframe Product has no function or capability for nonlocal maintenance, this is not applicable.

Examine installation and configuration settings.

If the Mainframe Product does not use FIPS 140 compliant modules to protect the confidentiality of nonlocal maintenance and diagnostic communications, this is a finding.

Check Content Reference

M

Target Key

2906