STIGQter STIGQter: STIG Summary: IBM MQ Appliance V9.0 AS Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 05 Jun 2017:

The MQ Appliance SSH interface to the messaging server must prohibit the use of cached authenticators after 600 seconds.

DISA Rule

SV-89489r1_rule

Vulnerability Number

V-74815

Group Title

SRG-APP-000400-AS-000246

Rule Version

MQMH-AS-000730

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

In the MQ Appliance WebGUI, Go to Administration (gear icon) >> Access >> RBM Settings.

Limit cache settings to "600" seconds.

Check Contents

In the MQ Appliance WebGUI, Go to Administration (gear icon) >> Access >> RBM Settings.

Verify that cache setting is defined and specifies "600" seconds.

If the time period is not set to "600" seconds, this is a finding.

Vulnerability Number

V-74815

Documentable

False

Rule Version

MQMH-AS-000730

Severity Override Guidance

In the MQ Appliance WebGUI, Go to Administration (gear icon) >> Access >> RBM Settings.

Verify that cache setting is defined and specifies "600" seconds.

If the time period is not set to "600" seconds, this is a finding.

Check Content Reference

M

Target Key

3239

Comments