IBM z/OS Policy agent must contain a policy that manages excess capacity, bandwidth, or other redundancy to limit the effects of information flooding types of Denial of Service (DoS) attacks.
Severity | Group ID | Group Title | Version | Rule ID | Date | STIG Version |
---|---|---|---|---|---|---|
medium | V-223572 | SRG-OS-000142-GPOS-00071 | ACF2-OS-000370 | SV-223572r958528_rule | 2025-03-11 | 9 |
Description |
---|
DoS is a condition when a resource is not available for legitimate users. When this occurs, the organization either cannot accomplish its mission or must operate at degraded capacity. |
ℹ️ Check |
---|
Examine the Policy Agent policy statements. If it can be determined that there are policy statements that manages excess capacity, this is not a finding. |
✔️ Fix |
---|
Develop Policy application and Policy agent to manage excess capacity. |