STIGQter STIGQter: STIG Summary: IBM zVM Using CA VM:Secure Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 27 Oct 2022:

For FTP processing Z/VM TCP/IP FTP server Exit must be enabled.

DISA Rule

SV-237905r858942_rule

Vulnerability Number

V-237905

Group Title

SRG-OS-000032-GPOS-00013

Rule Version

IBMZ-VM-000090

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Include the "FTAUDIT" statement in the TCP/IP Configuration file.

Check Contents

If there are no FTP servers active, this is not applicable.

Issue "SMSG" command for each FTP Server.

Query "FTAUDIT".

If the "Exit" is not enabled, this is a finding.

Vulnerability Number

V-237905

Documentable

False

Rule Version

IBMZ-VM-000090

Severity Override Guidance

If there are no FTP servers active, this is not applicable.

Issue "SMSG" command for each FTP Server.

Query "FTAUDIT".

If the "Exit" is not enabled, this is a finding.

Check Content Reference

M

Target Key

5306