STIGQter STIGQter: STIG Summary:

z/OS IBM CICS Transaction Server for RACF Security Technical Implementation Guide

Version: 7

Release: 2 Benchmark Date: 01 Oct 2025

CheckedNameTitle
SV-224492r1144698_ruleCICS system data sets are not properly protected.
SV-224493r1145202_ruleSensitive CICS transactions are not protected in accordance with security requirements.
SV-224494r1144703_ruleCICS System Initialization Table (SIT) parameter values must be specified in accordance with proper security requirements.
SV-224495r1144706_ruleCICS region logonid(s) must be defined and/or controlled in accordance with the security requirements.
SV-224496r1145204_ruleCICS default logonid(s) must be defined and/or controlled in accordance with the security requirements.
SV-224497r1144711_ruleCICS logonid(s) must have timeout limit set to 15 minutes.
SV-224498r1144713_ruleIBM CICS Transaction Server SPI command resources must be properly defined and protected.
SV-224499r1144716_ruleExternal RACF Classes are not active for CICS transaction checking.
SV-224500r1144718_ruleCICS regions are improperly protected to prevent unauthorized propagation of the region userid.