STIGQter STIGQter: STIG Summary: z/OS TADz for TSS Security Technical Implementation Guide Version: 7 Release: 2 Benchmark Date: 01 Oct 2025:

Tivoli Asset Discovery for z/OS (TADz) Started Task name(s) must be properly identified/defined to the system ACP.

DISA Rule

SV-225610r1146160_rule

Vulnerability Number

V-225610

Group Title

SRG-OS-000104

Rule Version

ZTADT030

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

The TADz Systems Programmer and ISSO will ensure that the started task(s) for TADz is properly defined.

Define the started task for TADz.

Example:

TSS CRE(TADZMON) DEPT(Dept) NAME('TADz STC') -
FAC(STC) PASSWORD(password,0) -
SOURCE(INTRDR) NOSUSPEND

Check Contents

Refer to the following reports produced by the TSS Data Collection:

- TSSCMDS.RPT(@ACIDS).

Review TADz STC/Batch ACID(s). If the following attributes are defined, this is not a finding.

FACILITY(STC, BATCH)
PASSWORD(xxxxxxxx,0)
SOURCE(INTRDR)
NOSUSPEND

Vulnerability Number

V-225610

Documentable

False

Rule Version

ZTADT030

Severity Override Guidance

Refer to the following reports produced by the TSS Data Collection:

- TSSCMDS.RPT(@ACIDS).

Review TADz STC/Batch ACID(s). If the following attributes are defined, this is not a finding.

FACILITY(STC, BATCH)
PASSWORD(xxxxxxxx,0)
SOURCE(INTRDR)
NOSUSPEND

Check Content Reference

M

Target Key

4208