Skip to content

III - Administrative Sensitive

Rules and Groups employed by this XCCDF Profile

  • SRG-OS-000480-GPOS-00227

    Group
  • Hardware Management Console management must be accomplished by using the out-of-band or direct connection method.

    Removing the management traffic from the production network diminishes the security profile of the Hardware Management Console servers by allowing all the management ports to be closed on the produ...
    Rule Medium Severity
  • SRG-OS-000324-GPOS-00125

    Group
  • Product engineering access to the Hardware Management Console must be disabled.

    The Hardware Management Console has a built-in feature that allows Product Engineers access to the console. With access authority, IBM Product Engineering can log on the Hardware Management Console...
    Rule High Severity
  • SRG-OS-000480-GPOS-00227

    Group
  • Connection to the Internet for IBM remote support must be in compliance with the Remote Access STIGs.

    Failure to securely connect to remote sites can leave systems open to multiple attacks and security violations through the network. Failure to securely implement remote support connections can lead...
    Rule High Severity
  • SRG-OS-000480-GPOS-00227

    Group
  • Connection to the Internet for IBM remote support must be in compliance with mitigations specified in the Ports and Protocols and Services Management (PPSM) requirements.

    Failure to securely connect to remote sites can leave systems open to multiple attacks and security violations through the network. Failure to securely implement remote support connections can lead...
    Rule High Severity
  • SRG-OS-000480-GPOS-00227

    Group
  • The Enterprise System Connection (ESCON) Director (ESCD) Application Console must be located in a secure location

    The ESCD Application Console is used to add, change, and delete port configurations and dynamically switch paths between devices. If the ESCON Director Application Console is not located in a secur...
    Rule High Severity

The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.

Capacity
Modules