STIGQter STIGQter: STIG Summary:

IBM zSecure Suite Security Technical Implementation Guide

Version: 1

Release: 3 Benchmark Date: 02 Apr 2025

CheckedNameTitle
SV-259728r1050748_ruleAccess to IBM Security zSecure installation data sets must be properly restricted and logged.
SV-259729r960960_ruleAccess to IBM Security zSecure STC data sets must be properly restricted and logged.
SV-259730r1050750_ruleAccess to IBM Security zSecure user data sets must be properly restricted and logged.
SV-259731r1051324_ruleStarted tasks for IBM Security zSecure products must be properly defined.
SV-259732r961095_ruleAccess to IBM Security zSecure program resources must be limited to authorized users.
SV-259733r1050755_ruleIBM Security zSecure must prevent nonprivileged users from executing privileged zSecure functions.
SV-259734r1050758_ruleThe IBM Security zSecure programs CKFCOLL and CKGRACF, and the APF-authorized version of program CKRCARLA, must be restricted to security administrators, security batch jobs performing External Security Manager (ESM) maintenance, auditors, and systems programmers, and must be audited.
SV-259735r961458_ruleIBM Security zSecure must implement organization-defined automated security responses if baseline zSecure configurations are changed in an unauthorized manner.
SV-259736r961677_ruleIBM Security zSecure must remove all upgraded/replaced zSecure software components that are no longer required for operation after updated versions have been installed.
SV-259737r961683_ruleIBM Security zSecure system administrators must install security-relevant zSecure software updates within the time period directed by an authoritative source (e.g., IAVMs, CTOs, DTMs, and STIGs).
SV-259738r961863_ruleXFACILIT class, or alternate class if specified in module CKRSITE, must be active.