IBM RACF must limit Write or greater access to libraries that contain PPT modules to system programmers only.
An XCCDF Rule
Description
Specific PPT designated program modules possess significant security bypass capabilities. Unauthorized access could result in the compromise of the operating system environment, ACP, and customer data. Satisfies: SRG-OS-000080-GPOS-00048, SRG-OS-000259-GPOS-00100, SRG-OS-000324-GPOS-00125
- ID
- SV-223650r958472_rule
- Version
- RACF-ES-000020
- Severity
- Low
- References
- Updated
Remediation Templates
A Manual Procedure
Configure the WRITE or greater access to libraries containing PPT modules to be limited to system programmers only and all WRITE or greater access is logged.