U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

zOS TSS STIG Version 6, Release 58 Checklist Details (Checklist Revisions)

Supporting Resources:

Target:

Target CPE Name
IBM OS390 cpe:/o:ibm:os_390 (View CVEs)

Checklist Highlights

Checklist Name:
zOS TSS STIG
Checklist ID:
288
Version:
Version 6, Release 58
Type:
Compliance
Review Status:
Under Review
Authority:
Governmental Authority: Defense Information Systems Agency
Original Publication Date:
07/27/2012

Checklist Summary:

This SRR Review Procedures, OS/390 Top Secret document provides the procedures for conducting a Security Readiness Review (SRR) to determine compliance with the requirements in the OS/390 Security Technical Implementation Guides (STIG). This SRR guide focuses strictly on the IBM OS/390 operating system (OS) and how the Top Secret security component interacts with the operating system. Additionally, this checklist ensures the site has properly installed and implemented the Top Secret component for the IBM OS/390 OS and that it is being managed in a way that is secure, efficient, and effective, through procedures outlined in the checklist. The items reviewed are based on standards and requirements published by DISA in the OS/390 Security Technical Implementation Guide.

Checklist Role:

  • Mainframe Operating System

Known Issues:

Not provided.

Target Audience:

Developed for the DOD. This checklist has been created for IT professionals, particularly Information Assurance Managers (IAM), Information Assurance Officers (IAO), System Administrators (SAs) and and systems programming personnel in support of protecting z/OS operating systems, ACPs, and IA-enabled products in the following sites: Systems Management Centers (SMCs), Computing Services Processing Element (CSPE), Systems Support Offices (SSOs), DoD Components, and Other DoD customers.

Target Operational Environment:

  • Managed
  • Specialized Security-Limited Functionality (SSLF)

Testing Information:

Not provided.

Regulatory Compliance:

DOD Directive 8500.

Comments/Warnings/Miscellaneous:

Not provided.

Disclaimer:

Not provided.

Product Support:

It should be noted that FSO Support for the STIGs, Checklists, and Tools is only available to DOD Customers.

Point of Contact:

Not provided.

Sponsor:

Not provided.

Licensing:

Not provided.

Change History:

Version 6, Release 15 - 26 April 2013
Version 6, Release 14 - 25 January 2013
Version 6, Release 13 - 26 October 2012
Version 6, Release 12 - 27 July 2012
Version 6, Release 11 - 27 April 2012
Version 6, Release 10 - 23 January 2012
Version 6, Release 9 - 28 October 2011
Version 6, Release 8 - 28 July 2011
Version 6, Release 7 - 29 April 2011
Version 6, Release 6 - 28 January 2011
Version 6, Release 5 - 29 October 2010
Version 6, Release 4 - 27 August 2010
Version 6, Release 3 - 23 April 2010
Version 6, Release 8 - 28 July 2011

Dependency/Requirements:

URL Description
http://iase.disa.mil/stigs/Documents/zos_stig_v6r1.1memo080609.pdf zOS STIG - Version 6, Release 1.1 Memo.

References:

Reference URL Description

NIST checklist record last modified on 05/21/2013


* This checklist is still undergoing review for inclusion into the NCP.