z/OS IBM CICS Transaction Server for TSS Security Technical Implementation Guide
Rules, Groups, and Values defined within the XCCDF Benchmark
-
CICS logonid(s) must be configured with proper timeout and signon limits.
CICS is a transaction-processing product that provides programmers with the facilities to develop interactive applications. Improperly defined or controlled CICS userids (i.e., region, default, and...Rule Medium Severity -
SRG-OS-000018
Group -
SRG-OS-000080
Group -
CICS userids are not defined and/or controlled in accordance with proper security requirements.
CICS is a transaction-processing product that provides programmers with the facilities to develop interactive applications. Improperly defined or controlled CICS userids (i.e., region, default, and...Rule Medium Severity -
SRG-OS-000480
Group -
Control options for the Top Secret CICS facilities must meet minimum requirements.
TSS CICS facilities define the security controls in effect for CICS regions. Failure to code the appropriate values could result in degraded security. This exposure may result in unauthorized acces...Rule Medium Severity -
CICS system data sets are not properly protected.
CICS is a transaction-processing product that provides programmers with the facilities to develop interactive applications. Unauthorized access to CICS system data sets (i.e., product, security, an...Rule Medium Severity -
IBM CICS Transaction Server SPI command resources must be properly defined and protected.
IBM CICS Transaction Server can run with sensitive system privileges, and potentially can circumvent system controls. Failure to properly control access to product resources could result in the com...Rule Medium Severity
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.
Capacity
Modules