STIGQter STIGQter: STIG Summary: CA IDMS Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 01 Jul 2026:

All installation-delivered IDMS Database-Administrator-level programs must be properly secured.

DISA Rule

SV-251592r1137654_rule

Vulnerability Number

V-251592

Group Title

SRG-APP-000033-DB-000084

Rule Version

IDMS-DB-000120

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Contact the security office to confirm that the programs in this list are secured via the ESM and assigned to the appropriate users. Each program in the list must be secured.

Check Contents

The following are DBA-level batch programs and are executed using JCL rather than the CV. As batch programs, they need to be secured for DBAs in the external security manager (ESM) (included in DCADMIN, DBADMIN level security) rather than through the SRTT.

Validate the following suggested DBA-level programs are secured by the ESM.
ADSOBSYS
ADSOBTAT
IDMSCHEM
IDMSDBN1
IDMSDBN2
IDMSDDDL
IDMSPASS
IDMSRSTC
IDMSUBSC
RHDCOMVS

Contact the security office to confirm that the programs in this list are secured. If not, this is a finding.

Vulnerability Number

V-251592

Documentable

False

Rule Version

IDMS-DB-000120

Severity Override Guidance

The following are DBA-level batch programs and are executed using JCL rather than the CV. As batch programs, they need to be secured for DBAs in the external security manager (ESM) (included in DCADMIN, DBADMIN level security) rather than through the SRTT.

Validate the following suggested DBA-level programs are secured by the ESM.
ADSOBSYS
ADSOBTAT
IDMSCHEM
IDMSDBN1
IDMSDBN2
IDMSDDDL
IDMSPASS
IDMSRSTC
IDMSUBSC
RHDCOMVS

Contact the security office to confirm that the programs in this list are secured. If not, this is a finding.

Check Content Reference

M

Target Key

5418