Skip to content

III - Administrative Sensitive

Rules and Groups employed by this XCCDF Profile

  • SRG-APP-000480

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must automatically shut down the information system, restart the information system, and/or implement security safeguards as conditions as defined in site security plan when integrity violations are discovered.

    &lt;VulnDiscussion&gt;Unauthorized changes to software, firmware, and information can occur due to errors or malicious activity (e.g., tampering). ...
    Rule Medium Severity
  • SRG-APP-000484

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must audit detected potential integrity violations.

    &lt;VulnDiscussion&gt;Without an audit capability, an integrity violation may not be detected. Organizations select response actions based on types...
    Rule Medium Severity
  • SRG-APP-000485

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product, upon detection of a potential integrity violation, must initiate one or more of the following actions: generate an audit record, alert the current user, alert personnel or roles as defined in the site security plan, and/or perform other actions as defined in the SSP.

    &lt;VulnDiscussion&gt;Without an audit capability, an integrity violation may not be detected. Organizations select response actions based on types...
    Rule Medium Severity
  • SRG-APP-000488

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must prompt the user for action prior to executing mobile code.

    &lt;VulnDiscussion&gt;Mobile code can cause damage to the system. It can execute without explicit action from, or notification to, a user. Action...
    Rule Medium Severity
  • SRG-APP-000492

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records when successful/unsuccessful attempts to access security objects occur.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000493

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records when successful/unsuccessful attempts to access security levels occur.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000494

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records when successful/unsuccessful attempts to access categories of information (e.g., classification levels) occur.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000495

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records when successful/unsuccessful attempts to modify privileges occur.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000496

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records when successful/unsuccessful attempts to modify security objects occur.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000497

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records when successful/unsuccessful attempts to modify security levels occur.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000498

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records when successful/unsuccessful attempts to modify categories of information (e.g., classification levels) occur.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000499

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records when successful/unsuccessful attempts to delete privileges occur.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000500

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records when successful/unsuccessful attempts to delete security levels occur.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000501

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records when successful/unsuccessful attempts to delete security objects occur.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000502

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records when successful/unsuccessful attempts to delete categories of information (e.g., classification levels) occur.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000503

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records when successful/unsuccessful logon attempts occur.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000504

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records for privileged activities or other system-level access.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000505

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records showing starting and ending time for user access to the system.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000506

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records when concurrent logons from different workstations occur.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000507

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records when successful/unsuccessful accesses to objects occur.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000508

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records for all direct access to the information system.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000509

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records for all account creations, modifications, disabling, and termination events.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000510

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must generate audit records for all kernel module load, unload, and restart events, and for all program initiations.

    &lt;VulnDiscussion&gt;Without generating audit records that are specific to the security and mission needs of the organization, it would be difficu...
    Rule Medium Severity
  • SRG-APP-000514

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must implement NIST FIPS-validated cryptography to provision digital signatures in accordance with applicable federal laws, Executive orders, directives, policies, regulations, and standards.

    &lt;VulnDiscussion&gt;Use of weak or untested encryption algorithms undermines the purposes of using encryption to protect data. The application mu...
    Rule Medium Severity
  • SRG-APP-000514

    <GroupDescription></GroupDescription>
    Group
  • The Mainframe Product must implement NIST FIPS-validated cryptography to generate and validate cryptographic hashes in accordance with applicable federal laws, Executive orders, directives, policies, regulations, and standards.

    &lt;VulnDiscussion&gt;Use of weak or untested encryption algorithms undermines the purposes of using encryption to protect data. The application mu...
    Rule Medium Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules