STIGQter STIGQter: STIG Summary: IBM z/OS TSS Security Technical Implementation Guide Version: 8 Release: 2 Benchmark Date: 23 Apr 2021:

IBM z/OS system administrator must develop a procedure to remove or disable emergency accounts after the crisis is resolved or 72 hours.

DISA Rule

SV-224036r561402_rule

Vulnerability Number

V-224036

Group Title

SRG-OS-000123-GPOS-00064

Rule Version

TSS0-OS-000400

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Develop a procedure to remove or disable emergency user accounts after the crisis is resolved or 72 hours.

Check Contents

Ask the system administrator for the procedure to automatically remove or disable emergency accounts after the crisis is resolved or 72 hours.

If there is no procedure, this is a finding.

Vulnerability Number

V-224036

Documentable

False

Rule Version

TSS0-OS-000400

Severity Override Guidance

Ask the system administrator for the procedure to automatically remove or disable emergency accounts after the crisis is resolved or 72 hours.

If there is no procedure, this is a finding.

Check Content Reference

M

Target Key

4102

Comments