U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vanguard Administrator and Analyzer z/OS RACF Checklist for completing an SRR audit manually 6.12 Checklist Details (Checklist Revisions)

Supporting Resources:

Target:

Target CPE Name
IBM RACF cpe:/a:ibm:racf (View CVEs)
IBM Z/OS Version 1, Release 9 cpe:/o:ibm:z%2fos:1.9 (View CVEs)
IBM z/OS Version 1 Release 10 cpe:/o:ibm:z%2fos:1.10 (View CVEs)
IBM z/OS Version 1 Release 11 cpe:/o:ibm:z%2fos:1.11 (View CVEs)
IBM z/OS Version 1 Release 12 cpe:/o:ibm:z%2fos:1.12 (View CVEs)

Checklist Highlights

Checklist Name:
Vanguard Administrator and Analyzer z/OS RACF Checklist for completing an SRR audit manually
Checklist ID:
433
Version:
6.12
Type:
Compliance
Review Status:
Archived
Authority:
Third Party: Vanguard Integrity Professionals, Inc.
Original Publication Date:
08/17/2012

Checklist Summary:

The purpose of this checklist is to provide z/OS environments utilizing the RACF security subsystem a method to execute a DOD DISA STIG checklist against the z/OS RACF platform using Vanguard Administrator and Vanguard Analyzer. This checklist is a more time and labor intensive manual process as compared to the process available via the z/OS STIG RACF Checklist which uses the Vanguard Configuration Manager Product.

Checklist Role:

  • Operating System

Known Issues:

Not provided

Target Audience:

z/OS RACF Security Personnel with systems programming knowledge or the ability to find some of the target datasets on their system (PROCLIBs, Parmlibs, APF list, etc.).

Target Operational Environment:

  • Managed
  • Specialized Security-Limited Functionality (SSLF)

Testing Information:

z/OS 1.11,1.12 and 1.13

Regulatory Compliance:

Department of Defense (DOD) 8500

Comments/Warnings/Miscellaneous:

Not provided

Disclaimer:

Not provided

Product Support:

Vendor will accept support calls.

Point of Contact:

[email protected]

Sponsor:

Vanguard Integrity Professionals, Inc.

Licensing:

Copyrighted, royalty free license to use.

Change History:

Make visible
cww - Update checklist summary
Update checklist name
cpm - removed reference link to DISA stig site which is 404 and updated to the new URL
This checklist was upgraded to be compliant with the posted V6.7 z/OS RACF NIST and DOD DISA STIG checklists.
Added new checks and modified existing checks to be consistent with the DISA z/OS RACF STIGs version 6.8.  For complete list of changes please see Instruction Document.
Modified to be consistent with V6.9 of DISA z/OS STIG Checklists for RACF
Updated to Version 6.10 of DISA STIGS
Updated to 6.11
Checklists updated to comply with new DISA STIGS release V6R12 of July 2012

Dependency/Requirements:

URL Description
http://iase.disa.mil/stigs/index.html DISA IASE STIGS homepage

References:

Reference URL Description

NIST checklist record last modified on 04/15/2013