STIGQter STIGQter: STIG Summary: IBM Hardware Management Console (HMC) Security Technical Implementation Guide Version: 2 Release: 1 Benchmark Date: 24 Jul 2024:

The Hardware Management Console Event log must be active.

DISA Rule

SV-256874r958442_rule

Vulnerability Number

V-256874

Group Title

SRG-OS-000062-GPOS-00031

Rule Version

HMC0070

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

The System Administrator will activate the Hardware Management Console Event log and ensure that all tracking parameters are set.

This is done by selecting the View Console Events panel under Console Actions.
From this panel you can display:

Console Information on EC Changes
Console Service History displays HMC Problems
Console Tasks Displays Last 2000 tasks performed on console
View Licenses View LIC (Licensed Internal Code)
View Security Logs tracks an object’s operational state, status, or settings change or involves user access to tasks, actions, and objects.

Check Contents

Verify on the Hardware Management Console that the Event log is in use.

This is done by selecting the View Console Events panel under Console Actions.
From this panel you can display:

Console Information on EC Changes
Console Service History displays HMC Problems
Console Tasks Displays Last 2000 tasks performed on console
View Licenses View LIC (Licensed Internal Code)
View Security Logs tracks an object’s operational state, status, or settings change or involves user access to tasks, actions, and objects.

If no Event log exists, this is a FINDING.

If the Event log exists and is not collecting data, this is a FINDING.

Vulnerability Number

V-256874

Documentable

False

Rule Version

HMC0070

Severity Override Guidance

Verify on the Hardware Management Console that the Event log is in use.

This is done by selecting the View Console Events panel under Console Actions.
From this panel you can display:

Console Information on EC Changes
Console Service History displays HMC Problems
Console Tasks Displays Last 2000 tasks performed on console
View Licenses View LIC (Licensed Internal Code)
View Security Logs tracks an object’s operational state, status, or settings change or involves user access to tasks, actions, and objects.

If no Event log exists, this is a FINDING.

If the Event log exists and is not collecting data, this is a FINDING.

Check Content Reference

M

Target Key

5533