STIGQter STIGQter: STIG Summary: IBM zVM Using CA VM:Secure Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 27 Oct 2022:

IBM z/VM system administrator must develop procedures to manually control temporary, interactive, and emergency accounts.

DISA Rule

SV-237969r649747_rule

Vulnerability Number

V-237969

Group Title

SRG-OS-000480-GPOS-00227

Rule Version

IBMZ-VM-002390

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Develop a manual procedure to handle temporary, inactive, and emergency accounts in accordance with appropriate policies.

Ensure that the procedures are documented and filed with ISSM/ISSO.

Check Contents

Ask the system administrator (SA) for documented manual procedures to handle temporary, inactive, and emergency accounts.

If there are no procedures or they are not documented and filed with the ISSM/ISSO, this is a finding.

Vulnerability Number

V-237969

Documentable

False

Rule Version

IBMZ-VM-002390

Severity Override Guidance

Ask the system administrator (SA) for documented manual procedures to handle temporary, inactive, and emergency accounts.

If there are no procedures or they are not documented and filed with the ISSM/ISSO, this is a finding.

Check Content Reference

M

Target Key

5306