STIGQter STIGQter: STIG Summary: Mainframe Product Security Requirements Guide Version: 3 Release: 5 Benchmark Date: 01 Jul 2026:

The Mainframe Product must, for password-based authentication, maintain a list of commonly used, expected, or compromised passwords on an organization-defined frequency.

DISA Rule

SV-263675r982343_rule

Vulnerability Number

V-263675

Group Title

SRG-APP-000830

Rule Version

SRG-APP-000830-MFP-000190

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Mainframe Product to maintain a list of commonly used, expected, or compromised passwords on an organization-defined frequency.

Check Contents

Verify the Mainframe Product is configured to maintain a list of commonly used, expected, or compromised passwords on an organization-defined frequency.

If the Mainframe Product is not configured to maintain a list of commonly used, expected, or compromised passwords on an organization-defined frequency, this is a finding.

Vulnerability Number

V-263675

Documentable

False

Rule Version

SRG-APP-000830-MFP-000190

Severity Override Guidance

Verify the Mainframe Product is configured to maintain a list of commonly used, expected, or compromised passwords on an organization-defined frequency.

If the Mainframe Product is not configured to maintain a list of commonly used, expected, or compromised passwords on an organization-defined frequency, this is a finding.

Check Content Reference

M

Target Key

2906