Check: RACF-ES-000530
IBM z/OS RACF STIG:
RACF-ES-000530
(in versions v8 r14 through v7 r1)
Title
The IBM RACF REALDSN SETROPTS value must be specified. (Cat II impact)
Discussion
Without information that establishes the identity of the subjects (i.e., users or processes acting on behalf of users) associated with the events, security personnel cannot determine responsibility for the potentially harmful event.
Check Content
From the ISPF Command Shell enter: SETRopts list If the REALDSN is enabled then the message "REAL DATA SET NAMES OPTION IS ACTIVE" will be displayed, this is not a finding. If the message "REAL DATA SET NAMES OPTION IS INACTIVE" is displayed, this is a finding.
Fix Text
Evaluate the impact associated with implementation of the control option. Configure control option as specified in the example below: The RACF Command SETR LIST will show the status of RACF Controls including the value for the REALDSN Option. REALDSN is ACTIVATED by issuing the command SETR REALDSN.
Additional Identifiers
Rule ID: SV-223700r604139_rule
Vulnerability ID: V-223700
Group Title: SRG-OS-000255-GPOS-00096
Expert Comments
CCIs
Number | Definition |
---|---|
CCI-001487 |
The information system generates audit records containing information that establishes the identity of any individuals or subjects associated with the event. |
Controls
Number | Title |
---|---|
AU-3 |
Content Of Audit Records |