STIGQter STIGQter: STIG Summary: IBM z/OS ACF2 Security Technical Implementation Guide Version: 8 Release: 2 Benchmark Date: 23 Apr 2021:

CA-ACF2 must enforce password complexity by requiring that at least one special character be used.

DISA Rule

SV-223500r695424_rule

Vulnerability Number

V-223500

Group Title

SRG-OS-000266-GPOS-00101

Rule Version

ACF2-ES-000820

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure Password option PSWDPLST as defined in CA ACF2 for z/OS Administration Guide.

Check Contents

From an ACF command screen enter:
SET CONTROL(GSO)
LIST PSWD

If PSWDPLST is coded as defined in CA ACF2 for z/OS Administration Guide, this is not a finding.

Vulnerability Number

V-223500

Documentable

False

Rule Version

ACF2-ES-000820

Severity Override Guidance

From an ACF command screen enter:
SET CONTROL(GSO)
LIST PSWD

If PSWDPLST is coded as defined in CA ACF2 for z/OS Administration Guide, this is not a finding.

Check Content Reference

M

Target Key

4100

Comments