Skip to content

IBM z/OS UNIX Telnet Server Startup parameters must be properly specified to display the banner.

An XCCDF Rule

Description

<VulnDiscussion>Display of a standardized and approved use notification before granting access to the publicly accessible operating system ensures privacy and security notification verbiage used is consistent with applicable federal laws, Executive Orders, directives, policies, regulations, standards, and guidance. System use notifications are required only for access via logon interfaces with human users and are not required when such human interfaces do not exist.</VulnDiscussion><FalsePositives></FalsePositives><FalseNegatives></FalseNegatives><Documentable>false</Documentable><Mitigations></Mitigations><SeverityOverrideGuidance></SeverityOverrideGuidance><PotentialImpacts></PotentialImpacts><ThirdPartyTools></ThirdPartyTools><MitigationControl></MitigationControl><Responsibility></Responsibility><IAControls></IAControls>

ID
SV-223643r958586_rule
Severity
Medium
References
Updated



Remediation - Manual Procedure

Configure the startup parameters in the inetd.conf file for otelnetd to exclude option -h.

Note: -h indicates that the logon banner should not be displayed.