UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

The Mainframe Product must conform to Federal Identity, Credential, and Access Management (FICAM)-issued profiles.


Overview

Finding ID Version Rule ID IA Controls Severity
V-205577 SRG-APP-000405-MFP-000252 SV-205577r982322_rule Medium
Description
Without conforming to FICAM-issued profiles, the information system may not be interoperable with FICAM-authentication protocols, such as SAML 2.0 and OpenID 2.0. This requirement addresses open identity management standards.
STIG Date
Mainframe Product Security Requirements Guide 2024-07-02

Details

Check Text ( C-5843r299958_chk )
If the Mainframe Product has no function or capability for user logon, this is not applicable.

If the Mainframe Product employs an external security manager for all account management functions, this is not applicable.

Examine user account configurations.

If the Mainframe Product is not configured to conform to FICAM-issued profiles, this is a finding.
Fix Text (F-5843r299959_fix)
Configure the Mainframe Product account management settings to conform to FICAM-issued profiles.