STIGQter STIGQter: STIG Summary: IBM z/OS TSS Security Technical Implementation Guide Version: 8 Release: 2 Benchmark Date: 23 Apr 2021:

The CA-TSS PWEXP Control Option must be set to 60.

DISA Rule

SV-223888r561402_rule

Vulnerability Number

V-223888

Group Title

SRG-OS-000076-GPOS-00044

Rule Version

TSS0-ES-000150

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Evaluate the impact associated with implementation of the control option. Develop a plan of action to implement the following control option setting as specified and proceed with the change.

PWEXP(60)

Check Contents

From the ISPF Command Shell enter:
TSS MODIFY STATUS

If the PWEXP Control Option value is not set to PWEXP(60), this is a finding.

Vulnerability Number

V-223888

Documentable

False

Rule Version

TSS0-ES-000150

Severity Override Guidance

From the ISPF Command Shell enter:
TSS MODIFY STATUS

If the PWEXP Control Option value is not set to PWEXP(60), this is a finding.

Check Content Reference

M

Target Key

4102

Comments