STIGQter STIGQter: STIG Summary: CA IDMS Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 01 Jul 2026:

IDMS must protect against the use web services that do not require a sign on when actions are performed that may be audited.

DISA Rule

SV-251598r960864_rule

Vulnerability Number

V-251598

Group Title

SRG-APP-000080-DB-000063

Rule Version

IDMS-DB-000180

Severity

CAT III

CCI(s)

Weight

10

Fix Recommendation

On the IDMS CV system where CA IDMS Web Services executes, enter "WEBC REQUIRE SIGNON=YES".

Check Contents

On the IDMS CV system where CA IDMS Web Services executes, enter "WEBC" to check Web Services configuration.

If "REQUIRE SIGNON = NO", this is a finding.

Vulnerability Number

V-251598

Documentable

False

Rule Version

IDMS-DB-000180

Severity Override Guidance

On the IDMS CV system where CA IDMS Web Services executes, enter "WEBC" to check Web Services configuration.

If "REQUIRE SIGNON = NO", this is a finding.

Check Content Reference

M

Target Key

5418