STIGQter STIGQter: STIG Summary: CA IDMS Security Technical Implementation Guide Version: 2 Release: 2 Benchmark Date: 01 Jul 2026:

CA IDMS must protect system and user code and storage from corruption by user programs.

DISA Rule

SV-251643r1137659_rule

Vulnerability Number

V-251643

Group Title

SRG-APP-000431-DB-000388

Rule Version

IDMS-DB-000790

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Use the following system generation parameters to enable the use of standard storage protection:

Set STORAGE KEY parameter of the SYSTEM statement to a value that is not" 9". (The value other than 9 is dependent on how the z/OS parm AllowUserKeyCSA is set).

Set PROTECT/NOPROTECT parameter of the SYSTEM statement to "PROTECT".

Set PROTECT/NOPROTECT parameter of the PROGRAM statement to "PROTECT" for ADSOMAIN, ADSORUN1, and user programs.

Generate and restart the system.

Check Contents

Log on to IDMS DC system and issue "DCPROFIL". If SYSTEM STORAGE PROTECTED: display is "NO", this is a finding.

Issue DCMT D PROGRAM pgmname where pgmname is ADSOMAIN, ADSORUN1, and user programs. If "Storage Prot" is "NO", this is a finding.

Vulnerability Number

V-251643

Documentable

False

Rule Version

IDMS-DB-000790

Severity Override Guidance

Log on to IDMS DC system and issue "DCPROFIL". If SYSTEM STORAGE PROTECTED: display is "NO", this is a finding.

Issue DCMT D PROGRAM pgmname where pgmname is ADSOMAIN, ADSORUN1, and user programs. If "Storage Prot" is "NO", this is a finding.

Check Content Reference

M

Target Key

5418