STIGQter STIGQter: STIG Summary: CA IDMS Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 01 Jul 2026:

IDMS must protect against the use of default userids.

DISA Rule

SV-251594r960864_rule

Vulnerability Number

V-251594

Group Title

SRG-APP-000080-DB-000063

Rule Version

IDMS-DB-000140

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

Set DFLTSGN=NO and remove the DFLTUID from the #SECRTT INITIAL macro that is input to the RHDCSRTT module, then reassemble and relink RHDCSRTT.

After making the above changes, assemble and link RHDCSRTT to create a new SRTT. To implement the new SRTT, either recycle any CVs that use the SRTT or issue these commands:

DCMT VARY NUCLEUS MODULE RHDCSRTT NEW COPY
DCMT VARY NUCLEUS RELOAD

Check Contents

Examine load module "RHDCSRTT" by executing CA IDMS utility "IDMSSRTD", or by issuing command "DCMT DISPLAY SRTT" while signed onto the CV, and reviewing the output.

Note: This requires PTFs SO07995 and SO09476.

If the TYPE=INITIAL #SECRTT has DFLTSGN=YES specified, this is a finding.

If DFLTUID is defined, this is a finding.

Vulnerability Number

V-251594

Documentable

False

Rule Version

IDMS-DB-000140

Severity Override Guidance

Examine load module "RHDCSRTT" by executing CA IDMS utility "IDMSSRTD", or by issuing command "DCMT DISPLAY SRTT" while signed onto the CV, and reviewing the output.

Note: This requires PTFs SO07995 and SO09476.

If the TYPE=INITIAL #SECRTT has DFLTSGN=YES specified, this is a finding.

If DFLTUID is defined, this is a finding.

Check Content Reference

M

Target Key

5418