IBM System Display and Search Facility (SDSF) Resource Class will be defined or active in the ACP.

Overview

Finding IDVersionRule IDIA ControlsSeverity
V-224322ZISFA038SV-224322r987853_ruleCCI-000336medium
Description
Failure to use a robust ACP to control a product could potentially compromise the integrity and availability of the MVS operating system and user data.
STIGDate
z/OS IBM System Display and Search Facility for ACF2 Security Technical Implementation Guide2025-02-24

Related Frameworks

2 paths across 2 frameworks
NIST 800-531 mapping
  • DISA · 7 · disa_xccdf · related
  • DISA · 2025-01-23 · disa_cci_list · equivalent
CCI1 mapping
CCI-000336
1.00
  • DISA · 7 · disa_xccdf · related

Details

Check Text (C-224322r987853_chk)

Refer to the following report produced by the ACF2 Data Collection: - ACF2CMDS.RPT(ACFGSO) If the following GSO CLASMAP record entry(ies) is (are) defined, this is not a finding. CLASMAP.SDSF RESOURCE(SDSF) RSRCTYPE(xxx) ENTITYLN(nn) Note: The site determines the appropriate three-letter RSRCTYPE that is unique for the SDSF. The ENTITYLN must be appropriate for the site's installation.

Fix Text (F-25987r822587_fix)

Use SAF security to define and protect the IBM SDSF resource class(es). Use the following commands as an example: CLASMAP.SDSF RESOURCE(SDSF) RSRCTYPE(SDF) ENTITYLN(39)