UCF STIG Viewer Logo

LOGONIDS with the REFRESH attribute must have the SUSPEND attribute specified.


Overview

Finding ID Version Rule ID IA Controls Severity
V-169 ACF0720 SV-169r2_rule DCCS-1 DCCS-2 Low
Description
Unauthorized users may be able to effect changes to ACP global system options. This could result in the compromise of the confidentiality, integrity, and availability of the operating system, ACP, or customer data.
STIG Date
z/OS ACF2 STIG 2019-12-12

Details

Check Text ( C-262r1_chk )
Refer to the following report produced by the ACF2 Data Collection:

- ACF2CMDS.RPT(ATTREFSH)

Automated Analysis
Refer to the following report produced by the ACF2 Data Collection:

- PDI(ACF0720)

Ensure that emergency logonids with the REFRESH attribute are in SUSPEND status.
Fix Text (F-16921r1_fix)
The IAO will ensure that logonids with the REFRESH attribute are in SUSPEND status unless actually in use.

The emergency logonids with the REFRESH attribute will be in SUSPEND status unless actually in use.

Example:

SET LID
CHANGE logonid SUSPEND