STIGQter STIGQter: STIG Summary: IBM zVM Using CA VM:Secure Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 27 Oct 2022:

The CA VM:Secure LOGONBY command must be restricted to system administrators.

DISA Rule

SV-237942r859011_rule

Vulnerability Number

V-237942

Group Title

SRG-OS-000326-GPOS-00126

Rule Version

IBMZ-VM-000990

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Assure that any "LOGONBY" rules in the CA VM: Secure Rules Facility only specifies users who are system administrators.

Check Contents

Examine the CA VM:Secure Rules facility for "LOGONBY" rules.

If the "LOGONBY" rules specifies users that are not system administrators, this is a finding.

Vulnerability Number

V-237942

Documentable

False

Rule Version

IBMZ-VM-000990

Severity Override Guidance

Examine the CA VM:Secure Rules facility for "LOGONBY" rules.

If the "LOGONBY" rules specifies users that are not system administrators, this is a finding.

Check Content Reference

M

Target Key

5306