STIGQter STIGQter: STIG Summary:

zOS WebSphere MQ for RACF Security Technical Implementation Guide

Version: 7

Release: 3 Benchmark Date: 01 Jul 2026

CheckedNameTitle
SV-224551r1212343_ruleWebSphere MQ channel security must be implemented in accordance with security requirements.
SV-224552r1145043_ruleWebSphere MQ channel security is not implemented in accordance with security requirements.
SV-224553r1145045_ruleProduction WebSphere MQ Remotes must utilize Certified Name Filters (CNF).
SV-224554r1145047_ruleUser timeout parameter values for WebSphere MQ queue managers are not specified in accordance with security requirements.
SV-224555r1145050_ruleWebSphere MQ started tasks are not defined in accordance with the proper security requirements.
SV-224556r1145053_ruleWebSphere MQ all update and alter access to MQSeries/WebSphere MQ product and system data sets are not properly restricted.
SV-224557r1145056_ruleWebSphere MQ resource classes must be properly activated for security checking by the ESM.
SV-224558r1145059_ruleWebSphere MQ switch profiles must be properly defined to the appropriate ADMIN class.
SV-224559r1145062_ruleWebSphere MQ connection class resource definitions must be protected in accordance with security.
SV-224560r1145065_ruleWebSphere MQ dead letter and alias dead letter queues are not properly defined.
SV-224561r1145295_ruleWebSphere MQ MQQUEUE (Queue) resource profiles defined to the appropriate class must be protected in accordance with security requirements.
SV-224562r1145297_ruleWebSphere MQ Process resource profiles defined in the appropriate Class must be protected in accordance with security requirements.
SV-224563r1145074_ruleWebSphere MQ Namelist resource profiles defined in the appropriate class must be protected in accordance with security requirements.
SV-224564r1145077_ruleWebSphere MQ Alternate User resources defined to appropriate ADMIN resource class must be protected in accordance with security requirements.
SV-224565r1145080_ruleWebSphere MQ context resources defined to the appropriate ADMIN resource class must be protected in accordance with security requirements.
SV-224566r1145299_ruleWebSphere MQ command resources defined to MQCMDS resource class are not protected in accordance with security requirements.
SV-224567r1145086_ruleWebSphere MQ RESLEVEL resources in the appropriate ADMIN resource class must be protected in accordance with security requirements.