ACF2 TSO2741 GSO record values must be set to obliterate the logon password on 2741 devices.
An XCCDF Rule
Description
To prevent the compromise of authentication information, such as passwords during the authentication process, the feedback from the operating system must not provide any information allowing an unauthorized user to compromise the authentication mechanism.
- ID
- SV-223511r958470_rule
- Version
- ACF2-ES-000940
- Severity
- Medium
- References
- Updated
Remediation Templates
A Manual Procedure
Define a cross out string used to obliterate the logon password on 2741 devices.
Ensure the GSO TSO2741 record values conform to the following requirements.
BS(16)
LENGTH(8)