The MQ Appliance messaging server must protect against an individual (or process acting on behalf of an individual) falsely denying having performed organization-defined actions to be covered by non-repudiation.
An XCCDF Rule
Description
Non-repudiation of actions taken is required in order to messaging service application integrity. Examples of particular actions taken by individuals include creating information, sending a message, approving information (e.g., indicating concurrence or signing a contract), and receiving a message. Non-repudiation protects individuals against later claims by an author of not having authored a particular document, a sender of not having transmitted a message, a receiver of not having received a message, or a signatory of not having signed a document. Typical messaging server actions requiring non-repudiation will be related to application deployment among developers/users and administrative actions taken by admin personnel.
- ID
- SV-89401r1_rule
- Version
- MQMH-AS-000010
- Severity
- Medium
- References
- Updated
Remediation Templates
A Manual Procedure
To access the MQ Appliance CLI, enter:
mqcli
runmqsc [queue mgr name]
ALTER QMGR [AUTHOREV](ENABLED)