The Mainframe Product must audit detected potential integrity violations.

Overview

Finding IDVersionRule IDIA ControlsSeverity
V-205597SRG-APP-000484-MFP-000383SV-205597r961767_ruleCCI-002723medium
Description
Without an audit capability, an integrity violation may not be detected. Organizations select response actions based on types of software, specific software, or information for which there are potential integrity violations. The integrity verification application must have the capability to audit and it must be enabled.
STIGDate
Mainframe Product Security Requirements Guide2024-12-05

Details

Check Text (C-205597r961767_chk)

If the Mainframe Product has no function or capability for integrity verification, this is not applicable. Examine installation and configuration settings. If the Mainframe Product is not configured to audit detected potential integrity violations, this is a finding.

Fix Text (F-5863r300019_fix)

Configure the Mainframe Product to audit detected potential integrity violations.