STIGQter STIGQter: STIG Summary: IBM z/OS TSS Security Technical Implementation Guide Version: 9 Release: 9 Benchmark Date: 01 Jul 2026:

IBM z/OS FTP.DATA configuration statements for the FTP Server must be specified in accordance with requirements.

DISA Rule

SV-255896r991589_rule

Vulnerability Number

V-255896

Group Title

SRG-OS-000480-GPOS-00227

Rule Version

TSS0-FT-000130

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the FTP configuration to include the UMASK statement with a value of "077".

If the FTP Server requires a UMASK value less restrictive than "077", requirements should be justified and documented with the ISSO.

Check Contents

Refer to the Data configuration file specified on the SYSFTPD DD statement in the FTP started task JCL.

If the UMASK statement is coded with a value of "077", this is not a finding.

Vulnerability Number

V-255896

Documentable

False

Rule Version

TSS0-FT-000130

Severity Override Guidance

Refer to the Data configuration file specified on the SYSFTPD DD statement in the FTP started task JCL.

If the UMASK statement is coded with a value of "077", this is not a finding.

Check Content Reference

M

Target Key

4102