Skip to main content
CUI

Documentation - V-223969

V-223969

IBM z/OS TSS Security Technical Implementation Guide

CAT I

Title

CA-TSS ACIDs granted the CONSOLE attribute must be justified.

Description

<VulnDiscussion>Preventing non-privileged users from executing privileged functions mitigates the risk that unauthorized individuals or processes may gain unnecessary access to information or privileges. Privileged functions include, for example, establishing accounts, performing system integrity checks, or administering cryptographic key management activities. Non-privileged users are individuals that do not possess appropriate authorizations. Circumventing intrusion detection and prevention m...

Fix Text (Documentation Requirement)

Review all ACIDs with the CONSOLE attribute. Ensure access is limited to authorized SCA security administrators only. Evaluate the impact of correcting the deficiency. Develop a plan of action and implement the changes. Ensure documentation providing justification for access is maintained and filed with the ISSO.

Documentation Status

Cancel
CUI