STIGQter STIGQter: STIG Summary: z/OS IBM System Display and Search Facility (SDSF) for ACF2 Security Technical Implementation Guide Version: 7 Release: 2 Benchmark Date: 01 Oct 2025:

IBM System Display and Search Facility (SDSF) Resource Class will be defined or active in the ACP.

DISA Rule

SV-224322r1141558_rule

Vulnerability Number

V-224322

Group Title

SRG-OS-000309

Rule Version

ZISFA038

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Use SAF security to define and protect the IBM SDSF resource class(es).

Use the following commands as an example:

CLASMAP.SDSF RESOURCE(SDSF) RSRCTYPE(SDF) ENTITYLN(39)

Check Contents

Refer to the following report produced by the ACF2 Data Collection:

- ACF2CMDS.RPT(ACFGSO).

If the following GSO CLASMAP record entry(ies) is (are) defined, this is not a finding.

CLASMAP.SDSF RESOURCE(SDSF) RSRCTYPE(xxx) ENTITYLN(nn)

Note: The site determines the appropriate three-letter RSRCTYPE that is unique for the SDSF. The ENTITYLN must be appropriate for the site's installation.

Vulnerability Number

V-224322

Documentable

False

Rule Version

ZISFA038

Severity Override Guidance

Refer to the following report produced by the ACF2 Data Collection:

- ACF2CMDS.RPT(ACFGSO).

If the following GSO CLASMAP record entry(ies) is (are) defined, this is not a finding.

CLASMAP.SDSF RESOURCE(SDSF) RSRCTYPE(xxx) ENTITYLN(nn)

Note: The site determines the appropriate three-letter RSRCTYPE that is unique for the SDSF. The ENTITYLN must be appropriate for the site's installation.

Check Content Reference

M

Target Key

4124