Skip to content

IBM z/OS RACF Security Technical Implementation Guide

Rules, Groups, and Values defined within the XCCDF Benchmark

  • The IBM z/OS startup user account for the z/OS UNIX Telnet Server must be properly defined.

    <VulnDiscussion>The PROFILE.TCPIP configuration file provides system operation and configuration parameters for the TN3270 Telnet Server. Sev...
    Rule Medium Severity
  • SRG-OS-000080-GPOS-00048

    <GroupDescription></GroupDescription>
    Group
  • IBM z/OS HFS objects for the z/OS UNIX Telnet Server must be properly protected.

    &lt;VulnDiscussion&gt;HFS directories and files of the z/OS UNIX Telnet Server provide the configuration and executable properties of this product....
    Rule Medium Severity
  • The IBM z/OS UNIX Telnet Server etc/banner file must have the Standard Mandatory DoD Notice and Consent Banner.

    &lt;VulnDiscussion&gt;A logon banner can be used to inform users about the environment during the initial logon. Logon banners are used to warn use...
    Rule Medium Severity
  • SRG-OS-000228-GPOS-00088

    <GroupDescription></GroupDescription>
    Group
  • IBM z/OS UNIX Telnet server Startup parameters must be properly specified.

    &lt;VulnDiscussion&gt;The z/OS UNIX Telnet Server (i.e., otelnetd) provides interactive access to the z/OS UNIX shell. During the initialization pr...
    Rule Medium Severity
  • SRG-OS-000228-GPOS-00088

    <GroupDescription></GroupDescription>
    Group
  • The IBM z/OS UNIX Telnet server warning banner must be properly specified.

    &lt;VulnDiscussion&gt;Display of a standardized and approved use notification before granting access to the publicly accessible operating system en...
    Rule Medium Severity
  • SRG-OS-000080-GPOS-00048

    <GroupDescription></GroupDescription>
    Group
  • IBM z/OS System datasets used to support the VTAM network must be properly secured.

    &lt;VulnDiscussion&gt;To mitigate the risk of unauthorized access to sensitive information by entities that have been issued certificates by DoD-ap...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules