Skip to content

IBM z/OS FTP Control cards must be properly stored in a secure PDS file.

An XCCDF Rule

Description

Configuring the operating system to implement organization-wide security implementation guides and security checklists ensures compliance with federal standards and establishes a common security baseline across DoD that reflects the most restrictive security posture consistent with operational requirements.

ID
SV-223523r991589_rule
Version
ACF2-FT-000070
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

Create a list or spreadsheet of the locations where FTP control cards are stored, who should have access to those libraries, and which applications the FTP control cards are for.

Add Columns for all people permitted access to the secured PDS.

Make sure that the FTP control Cards for each FTP are stored in a secure PDS and that they are not placed in the JCL libraries or in the in-stream JCL for each FTP.