STIGQter STIGQter: STIG Summary: IBM zVM Using CA VM:Secure Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 27 Oct 2022:

CA VM:Secure product ADMIN GLOBALS command must be restricted to systems programming personnel.

DISA Rule

SV-237922r858978_rule

Vulnerability Number

V-237922

Group Title

SRG-OS-000132-GPOS-00067

Rule Version

IBMZ-VM-000690

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure grant statements in the "AUTHORIZ" file using the "ADMIN GLOBALS" command that list Sys Admins only.

Check Contents

Examine the "AUTHORIZ" config file.

If authorization to "ADMIN GLOBALS" is granted to "SYS Admin", this is not a finding.

Vulnerability Number

V-237922

Documentable

False

Rule Version

IBMZ-VM-000690

Severity Override Guidance

Examine the "AUTHORIZ" config file.

If authorization to "ADMIN GLOBALS" is granted to "SYS Admin", this is not a finding.

Check Content Reference

M

Target Key

5306