Skip to content

IBM Hardware Management Console (HMC) Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • The terminal or workstation must lock out after a maximum of 15 minutes of inactivity, requiring the account password to resume.

    If the system, workstation, or terminal does not lock the session after more than15 minutes of inactivity, requiring a password to resume operations, the system or individual data could be compromi...
    Rule Medium Severity
  • SRG-OS-000023-GPOS-00006

    Group
  • The Department of Defense (DoD) logon banner must be displayed prior to any login attempt.

    Failure to display the required DoD logon banner prior to a login attempt may void legal proceedings resulting from unauthorized access to system resources and may leave the SA, IAO, IAM, and Insta...
    Rule Medium Severity
  • SRG-OS-000366-GPOS-00153

    Group
  • SRG-OS-000342-GPOS-00133

    Group
  • SRG-OS-000480-GPOS-00227

    Group
  • SRG-OS-000324-GPOS-00125

    Group
  • SRG-OS-000480-GPOS-00227

    Group
  • SRG-OS-000480-GPOS-00227

    Group
  • The manufacturer’s default passwords must be changed for all Hardware Management Console (HMC) Management software.

    The changing of passwords from the HMC default values, blocks malicious users with knowledge of these default passwords, from creating a denial of service or from reconfiguring the HMC topology le...
    Rule High Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules