STIGQter STIGQter: STIG Summary: IBM z/OS TSS Security Technical Implementation Guide Version: 9 Release: 9 Benchmark Date: 01 Jul 2026:

IBM Integrated Crypto Service Facility (ICSF) Started task(s) must be properly defined to the Started Task Table ACID for Top Secret.

DISA Rule

SV-255943r958482_rule

Vulnerability Number

V-255943

Group Title

SRG-OS-000104-GPOS-00051

Rule Version

TSS0-IC-000050

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

The IBM Integrated Crypto Service Facility (ICSF) system programmer and the IAO will ensure that a product's started task(s) is (are) properly identified and/or defined to the System ACP.

A unique ACID must be assigned for the IBM Integrated Crypto Service Facility (ICSF) started task(s) thru a corresponding STC table entry.

The following sample set of commands is shown here as a guideline:

TSS ADD(STC) PROCNAME(CSFSTART) ACID(CSFSTART)

Check Contents

from the ISPF Command Shell enter

TSS LIST(STC)


If the IBM Integrated Crypto Service Facility (ICSF) started task(s) is (are) not defined in the TSS STC record this is a finding.

Vulnerability Number

V-255943

Documentable

False

Rule Version

TSS0-IC-000050

Severity Override Guidance

from the ISPF Command Shell enter

TSS LIST(STC)


If the IBM Integrated Crypto Service Facility (ICSF) started task(s) is (are) not defined in the TSS STC record this is a finding.

Check Content Reference

M

Target Key

4102