STIGQter STIGQter: STIG Summary: IBM Hardware Management Console (HMC) STIG Version: 1 Release: 5 Benchmark Date: 20 Jan 2015:

On Classified Systems, Logical Partition must be restricted with read/write access to only its own IOCDS.

DISA Rule

SV-30053r2_rule

Vulnerability Number

V-24379

Group Title

HLP0020

Rule Version

HLP0020

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Review the Security Definition parameters specified under Processor Resource/Systems Manager (PR/SM).
Verify and implement the correct settings.

Check Contents

Using the Hardware Management Console, verify that a logical partition cannot read or write to any IOCDS. Use the Security Definitions Page panel to do this by checking to see if the Input/Output (I/O) Configuration Control option has been turned on.

NOTE: The default is applicable to only classified systems.

Confirm whether or not the I/O Configuration Control option is checked.

If the Logical Partition is not restricted with read/write access to only its own IOCDS, this is a FINDING.

Vulnerability Number

V-24379

Documentable

False

Rule Version

HLP0020

Severity Override Guidance

Using the Hardware Management Console, verify that a logical partition cannot read or write to any IOCDS. Use the Security Definitions Page panel to do this by checking to see if the Input/Output (I/O) Configuration Control option has been turned on.

NOTE: The default is applicable to only classified systems.

Confirm whether or not the I/O Configuration Control option is checked.

If the Logical Partition is not restricted with read/write access to only its own IOCDS, this is a FINDING.

Check Content Reference

M

Responsibility

Systems Programmer

Target Key

1891

Comments