SV-224352r1141678_rule
V-224352
SRG-OS-000104
ZWAS0040
CAT I
10
The ISSO will ensure that the CBADMIN user account is removed or not defined to the ACP.
Refer to the following report produced by the ACP Data Collection:
ACF2
- ACF2CMDS.RPT(LOGONIDS).
RACF
- RACFCMDS.RPT(LISTUSER).
TSS
- TSSCMDS.RPT(@ACIDS).
Automated Analysis requires Additional Analysis.
Refer to the following report produced by the z/OS Data Collection:
- PDI(ZWAS0040)
If the CBADMIN user account is not defined to the ACP, this is not a finding.
If the CBADMIN user account is defined to ACP and the password has NOT been changed from the vendor default of CBADMIN, this is a finding with a severity of Category I.
If the CBADMIN user account is defined to the ACP and the password has been changed from the vendor default of CBADMIN, this is a finding with a severity of Category II.
V-224352
False
ZWAS0040
Refer to the following report produced by the ACP Data Collection:
ACF2
- ACF2CMDS.RPT(LOGONIDS).
RACF
- RACFCMDS.RPT(LISTUSER).
TSS
- TSSCMDS.RPT(@ACIDS).
Automated Analysis requires Additional Analysis.
Refer to the following report produced by the z/OS Data Collection:
- PDI(ZWAS0040)
If the CBADMIN user account is not defined to the ACP, this is not a finding.
If the CBADMIN user account is defined to ACP and the password has NOT been changed from the vendor default of CBADMIN, this is a finding with a severity of Category I.
If the CBADMIN user account is defined to the ACP and the password has been changed from the vendor default of CBADMIN, this is a finding with a severity of Category II.
M
4132