Skip to content

III - Administrative Sensitive

Rules and Groups employed by this XCCDF Profile

  • The Mainframe Product must provide centralized management and configuration of the content to be captured in audit records generated by all application components.

    <VulnDiscussion>Without the ability to centrally manage the content captured in the audit records, identification, troubleshooting, and corre...
    Rule Medium Severity
  • SRG-APP-000357

    <GroupDescription></GroupDescription>
    Group
  • The mainframe product must allocate audit record storage capacity in accordance with organization-defined audit record storage requirements.

    &lt;VulnDiscussion&gt;In order to ensure applications have a sufficient storage capacity in which to write the audit logs, applications need to be ...
    Rule Medium Severity
  • SRG-APP-000358

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must off-load audit records onto a different system or media than the system being audited.

    &lt;VulnDiscussion&gt;Information stored in one location is vulnerable to accidental or incidental deletion or alteration. Off-loading is a common...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules