STIGQter STIGQter: STIG Summary: zOS BMC CONTROL-M for TSS Security Technical Implementation Guide Version: 7 Release: 2 Benchmark Date: 01 Oct 2025:

BMC CONTROL-M configuration/parameter values must be specified properly.

DISA Rule

SV-224577r1145941_rule

Vulnerability Number

V-224577

Group Title

SRG-OS-000018

Rule Version

ZCTMT040

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

The BMC CONTROL-M systems programmer will verify that any configuration/parameters that are required to control the security of the product are properly configured and syntactically correct. Set the standard values for the BMC CONTROL-M security parameters for the specific ACP environment along with additional IOA security parameters with standard values as documented below.

Keyword Value
DEFMCHKM $$CTMEDM
SECTOLM NO
DFMM01 EXTEND
DFMM02 EXTEND
DFMM08 EXTEND
TSSJCARD U
MSUBCHK NO

Check Contents

Refer to the following applicable report produced by the z/OS Data Collection:

- IOA.RPT(SECPARM).

Automated Analysis
Refer to the following report produced by the z/OS Data Collection:

- PDI(ZCTM0040).

If the following keywords specify the values in the BMC CONTROL-M security parameter member, this is not a finding.

Keyword Value
DEFMCHKM $$CTMEDM
SECTOLM NO
DFMM01 EXTEND
DFMM02 EXTEND
DFMM08 EXTEND
TSSJCARD U
MSUBCHK NO

Vulnerability Number

V-224577

Documentable

False

Rule Version

ZCTMT040

Severity Override Guidance

Refer to the following applicable report produced by the z/OS Data Collection:

- IOA.RPT(SECPARM).

Automated Analysis
Refer to the following report produced by the z/OS Data Collection:

- PDI(ZCTM0040).

If the following keywords specify the values in the BMC CONTROL-M security parameter member, this is not a finding.

Keyword Value
DEFMCHKM $$CTMEDM
SECTOLM NO
DFMM01 EXTEND
DFMM02 EXTEND
DFMM08 EXTEND
TSSJCARD U
MSUBCHK NO

Check Content Reference

M

Target Key

4168