SV-225621r1146193_rule
V-225621
SRG-OS-000104
ZWAS0040
CAT I
10
The ISSO will ensure that the CBADMIN user account is removed or not defined to the ACP.
Refer to the following reports produced by the ACP Data Collection:
ACF2
- ACF2CMDS.RPT(LOGONIDS).
RACF
- RACFCMDS.RPT(LISTUSER).
TSS
- TSSCMDS.RPT(@ACIDS).
Automated Analysis requires Additional Analysis.
Refer to the following report produced by the z/OS Data Collection:
- PDI(ZWAS0040).
If the CBADMIN user account is not defined to the ACP, this is not a finding.
If the CBADMIN user account is defined to ACP and the password has NOT been changed from the vendor default of CBADMIN, this is a finding with a severity of Category I.
If the CBADMIN user account is defined to the ACP and the password has been changed from the vendor default of CBADMIN, this is a finding with a severity of Category II.
V-225621
False
ZWAS0040
Refer to the following reports produced by the ACP Data Collection:
ACF2
- ACF2CMDS.RPT(LOGONIDS).
RACF
- RACFCMDS.RPT(LISTUSER).
TSS
- TSSCMDS.RPT(@ACIDS).
Automated Analysis requires Additional Analysis.
Refer to the following report produced by the z/OS Data Collection:
- PDI(ZWAS0040).
If the CBADMIN user account is not defined to the ACP, this is not a finding.
If the CBADMIN user account is defined to ACP and the password has NOT been changed from the vendor default of CBADMIN, this is a finding with a severity of Category I.
If the CBADMIN user account is defined to the ACP and the password has been changed from the vendor default of CBADMIN, this is a finding with a severity of Category II.
M
4210