STIGQter STIGQter: STIG Summary: Mainframe Product Security Requirements Guide Version: 3 Release: 5 Benchmark Date: 01 Jul 2026:

The Mainframe Product must implement NIST FIPS-validated cryptography to protect unclassified information requiring confidentiality and cryptographic protection in accordance with applicable federal laws, Executive orders, directives, policies, regulations, and standards.

DISA Rule

SV-205621r1137807_rule

Vulnerability Number

V-205621

Group Title

SRG-APP-000514

Rule Version

SRG-APP-000514-MFP-000274

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Mainframe Product settings to implement FIPS 140 cryptography to protect unclassified information requiring confidentiality and cryptographic protection in accordance with applicable federal laws, Executive orders, directives, policies, regulations, and standards.

Check Contents

Examine installation and configuration settings.

If the Mainframe Product does not implement FIPS 140 cryptography to protect unclassified information requiring confidentiality and cryptographic protection in accordance with applicable federal laws, Executive orders, directives, policies, regulations, and standards, this is a finding.

Vulnerability Number

V-205621

Documentable

False

Rule Version

SRG-APP-000514-MFP-000274

Severity Override Guidance

Examine installation and configuration settings.

If the Mainframe Product does not implement FIPS 140 cryptography to protect unclassified information requiring confidentiality and cryptographic protection in accordance with applicable federal laws, Executive orders, directives, policies, regulations, and standards, this is a finding.

Check Content Reference

M

Target Key

2906