IBM Support

OA66925: SITE_SEVERITY SPECIFICATION WITH CONTROL BUT WITHOUT RULE DOES NOT CAUSE THE EXPECTED CHANGE IN AUDITPRIORITY

A fix is available

Subscribe

You can track all active APARs for this component.

 

APAR status

  • Closed as program error.

Error description

  • SITE_SEVERITY specification with CONTROL but without RULE does
    not cause the expected change in AUDITPRIORITY.
    

Local fix

  • N/A
    

Problem summary

  • ****************************************************************
    * USERS AFFECTED: Users of zSecure Audit exploiting custom     *
    *                 site-specific severities by using            *
    *                 SITE_SEVERITY CARLa statements for controls  *
    *                 or rule sets that are part of  supported     *
    *                 standards.                                   *
    ****************************************************************
    * PROBLEM DESCRIPTION: zSecure Audit ignores the <severity>    *
    *                      value specified in a SITE_SEVERITY      *
    *                      CARLa statement without a RULE[_SET]    *
    *                      specification causing an incorrect      *
    *                      audit  priority to be reported for the  *
    *                      involved control.                       *
    ****************************************************************
    * RECOMMENDATION: Apply the PTF provided and review the        *
    *                 documentation updates.                       *
    ****************************************************************
    When a SITE_SEVERITY CARLa statement does not contain a
    RULE[_SET] specification, zSecure Audit ignores the specified
    <severity>  value in the SITE_SEVERITY statement causing an
    incorrect audit priority to be reported for a control that is
    part of a supported standard.
    

Problem conclusion

  • zSecure Audit has been modified, so that the program accounts
    for the <severity> value as specified in a SITE_SEVERITY CARLa
    statement without RULE[_SET] specification.
    Please note the documentation changes as provided by the APAR
    tracking comment data.
    

Temporary fix

Comments

APAR Information

  • APAR number

    OA66925

  • Reported component name

    ZSEC BASE,ADMIN

  • Reported component ID

    5655T0100

  • Reported release

    310

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt / Xsystem

  • Submitted date

    2024-08-30

  • Closed date

    2024-09-11

  • Last modified date

    2024-10-02

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

    UJ95935

Modules/Macros

  • CKAINCMP CKRINPZ  GKRINCMP GKRINPZ
    

Fix information

  • Fixed component name

    ZSEC BASE,ADMIN

  • Fixed component ID

    5655T0100

Applicable component levels

  • R310 PSY UJ95935

       UP24/09/14 P F409

Fix is available

  • Select the PTF appropriate for your component level. You will be required to sign in. Distribution on physical media is not available in all countries.

[{"Business Unit":{"code":"BU048","label":"IBM Software"},"Product":{"code":"SSPQTM","label":"IBM Security zSecure Admin"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"310","Line of Business":{"code":"LOB24","label":"Security Software"}}]

Document Information

Modified date:
03 October 2024