STIGQter STIGQter: STIG Summary: IBM z/VM Using CA VM:Secure Security Technical Implementation Guide Version: 1 Release: 2 Benchmark Date: 27 Apr 2018:

CA VM:Secure product AUTOEXP record in the Security Config File must be properly set.

DISA Rule

SV-93577r1_rule

Vulnerability Number

V-78871

Group Title

SRG-OS-000076-GPOS-00044

Rule Version

IBMZ-VM-000500

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Include an “AUTOEXP” record in the “SECURITY CONFIG” file that is configured as follows:

AUTOEXP 50 60

Check Contents

Examine the “SECURITY CONFIG” file.

If there is no “AUTOEXP” record, this is a finding.

If the “AUTOEXP” record is configured as below, this is not finding.

AUTOEXP 50 60

Vulnerability Number

V-78871

Documentable

False

Rule Version

IBMZ-VM-000500

Severity Override Guidance

Examine the “SECURITY CONFIG” file.

If there is no “AUTOEXP” record, this is a finding.

If the “AUTOEXP” record is configured as below, this is not finding.

AUTOEXP 50 60

Check Content Reference

M

Target Key

3211

Comments