UCF STIG Viewer Logo
Changes are coming to https://stigviewer.com. Take our survey to help us understand your usage and how we can better serve you in the future.
Take Survey

The Mainframe Product must maintain a separate execution domain for each executing process.


Overview

Finding ID Version Rule ID IA Controls Severity
V-205586 SRG-APP-000431-MFP-000312 SV-205586r961608_rule Medium
Description
Applications can maintain separate execution domains for each executing process by assigning each process a separate address space. Each process has a distinct address space so that communication between processes is performed in a manner controlled through the security functions, and one process cannot modify the executing code of another process. Maintaining separate execution domains for executing processes can be achieved, for example, by implementing separate address spaces. An example is a web browser with process isolation that provides tabs that are separate processes using separate address spaces to prevent one tab crashing the entire browser.
STIG Date
Mainframe Product Security Requirements Guide 2024-07-02

Details

Check Text ( C-5852r299985_chk )
If the Mainframe Product has no function or capability for multi-session operation, this is not applicable.

If the Mainframe Product is not configured to uniquely define and engineer each session to execute independently of any other session, this is a finding.
Fix Text (F-5852r299986_fix)
Configure the Mainframe Product to uniquely define and engineer each session to execute independently of any other session.