An error occurred:
Close sidebar
Xylok
Home Menu
info@xylok.io
© 2025
Xylok, LLC
Version: releases-v2025.12.2 - rmfrev5
Xylok
Home Menu
info@xylok.io
© 2025
Xylok, LLC
Version: releases-v2025.12.2 - rmfrev5
Open sidebar
Navigate
Top
Search
Checks (
226
)
Print
Changes
Pages (
9/16
)
IBM z/OS ACF2 STIG
IBM z/OS ACF2 Security Technical Implementation Guide
v9 r6 (Released Oct. 1, 2025)
v9 r5 (Released July 2, 2025)
v9 r4 (Released April 2, 2025)
v9 r3 (Released Jan. 30, 2025)
v9 r2 (Released Oct. 24, 2024)
v9 r1 (Released July 24, 2024)
v8 r15 (Released April 24, 2024)
v8 r14 (Released Jan. 24, 2024)
v8 r13 (Released Oct. 25, 2023)
v8 r12 (Released July 26, 2023)
v8 r11 (Released April 27, 2023)
v8 r10 (Released Jan. 23, 2023)
v8 r9 (Released Nov. 23, 2022)
v8 r8 (Released Oct. 26, 2022)
v8 r7 (Released July 27, 2022)
v8 r6 (Released April 27, 2022)
v8 r5 (Released Jan. 27, 2022)
v8 r4 (Released Oct. 27, 2021)
v8 r3 (Released July 23, 2021)
v8 r2 (Released April 23, 2021)
v8 r1 (Released Oct. 23, 2020)
v7 r3 (Released July 24, 2020)
v7 r2 (Released April 24, 2020)
v7 r1 (Released Nov. 18, 2019)
v7 r0.1 (Released April 5, 2019)
ID
Vuln ID
Title
Cat
Status
ACF2-JS-000090
V-223536
IBM z/OS Surrogate users must be controlled in accordance with proper security requirements.
Cat II
ACF2-JS-000100
V-272874
IBM z/OS RJE workstations and NJE nodes must be defined to the FACILITY resource class.
Cat II
ACF2-OS-000010
V-223537
The IBM z/OS BPX.SMF resource must be properly configured.
Cat II
ACF2-OS-000030
V-223539
IBM z/OS Inapplicable PPT entries must be invalidated.
Cat II
ACF2-OS-000040
V-223540
The IBM z/OS system administrator (SA) must develop a process notify appropriate personnel when accounts are removed.
Cat II
ACF2-OS-000050
V-223541
The IBM z/OS system administrator (SA) must develop a process notify appropriate personnel when accounts are modified.
Cat II
ACF2-OS-000060
V-223542
The IBM z/OS system administrator (SA) must develop a process notify appropriate personnel when accounts are deleted.
Cat II
ACF2-OS-000070
V-223543
The IBM z/OS system administrator (SA) must develop a process notify appropriate personnel when accounts are created.
Cat II
ACF2-OS-000080
V-223544
IBM z/OS Required SMF data record types must be collected.
Cat II
ACF2-OS-000090
V-223545
IBM z/OS special privileges must be assigned on an as-needed basis to LOGONIDs associated with STCs and LOGONIDs that need to execute TSO in batch.
Cat II
ACF2-OS-000100
V-223546
IBM z/OS must specify SMF data options to assure appropriate activation.
Cat II
ACF2-OS-000110
V-223547
IBM z/OS SMF collection files (system MANx data sets or LOGSTREAM DASD) must have storage capacity to store at least one weeks worth of audit data.
Cat II
ACF2-OS-000120
V-223548
IBM z/OS system administrators must develop an automated process to collect and retain SMF data.
Cat II
ACF2-OS-000130
V-223549
IBM z/OS BUFUSEWARN in the SMFPRMxx must be properly set.
Cat II
ACF2-OS-000140
V-223550
IBM z/OS NOBUFFS in SMFPRMxx must be properly set (Default is MSG).
Cat II
Prev
1...
5
6
7
8
9
10
11
12
13
...16
Next
Print
Display this benchmark in a printer-friendly format for off-line reference. This display does not include any commands.
Version Changes
If there are multiple versions of this benchmark, Xylok can display the differences between any changes in the checks.