STIGQter STIGQter: STIG Summary: IBM Hardware Management Console (HMC) Security Technical Implementation Guide Version: 2 Release: 1 Benchmark Date: 24 Jul 2024:

The Enterprise System Connection (ESCON) Director (ESCD) Application Console must be located in a secure location

DISA Rule

SV-256857r991589_rule

Vulnerability Number

V-256857

Group Title

SRG-OS-000480-GPOS-00227

Rule Version

HLESC010

Severity

CAT I

CCI(s)

Weight

10

Fix Recommendation

Move the (ESCD) Console Application console to a secure location and implement access control procedures to ensure access by authorized personnel only.

An ESCD Console Application is used to provide data center personnel with an interface for displaying and
changing an ESCD'S connectivity attributes. It is also used to install, initialize, and service an ESCON Director.
Note: ESCD'S are slowly being phased out and are being replaced with FICON Directors.

Check Contents

If the ESCD Application Console is present, verify the location of the ESCD Application Console, otherwise this check is not applicable.

If the ESCON Director Application console is not located in a secure location this is a finding.

Vulnerability Number

V-256857

Documentable

False

Rule Version

HLESC010

Severity Override Guidance

If the ESCD Application Console is present, verify the location of the ESCD Application Console, otherwise this check is not applicable.

If the ESCON Director Application console is not located in a secure location this is a finding.

Check Content Reference

M

Target Key

5533