STIGQter STIGQter: STIG Summary: Mainframe Product Security Requirements Guide Version: 1 Release: 4 Benchmark Date: 24 Jan 2020:

The Mainframe Product must generate audit records when successful/unsuccessful logon attempts occur.

DISA Rule

SV-82707r1_rule

Vulnerability Number

V-68217

Group Title

SRG-APP-000503-MFP-000128

Rule Version

SRG-APP-000503-MFP-000128

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Configure the Mainframe Product to provide audit SAF to call when successful/unsuccessful logon attempts occur.

Check Contents

If the Mainframe Product does not have the function or capability for user logon, this is not applicable.

Examine configuration settings.

Determine if successful/unsuccessful logon attempts are audited. If they are not, this is a finding.

Vulnerability Number

V-68217

Documentable

False

Rule Version

SRG-APP-000503-MFP-000128

Severity Override Guidance

If the Mainframe Product does not have the function or capability for user logon, this is not applicable.

Examine configuration settings.

Determine if successful/unsuccessful logon attempts are audited. If they are not, this is a finding.

Check Content Reference

M

Target Key

3061

Comments