9.3 Review System Tablespaces

Information

System tablespaces store all system object data within that database. It is recommended that system tablespaces are used to stored system data only and not user data.

Solution

1. Connect to the DB2 database.
db2 => connect to $DB2DATABASE user $USERNAME using $PASSWORD
2. Review the system tablespaces to identify any user data objects within them.
3. Drop, migrate, or otherwise remove all user data objects (tables, schemas, etc.) from within the system tablespaces.
4. Revoke write access for the system tablespaces from all users.

See Also

https://workbench.cisecurity.org/files/162

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b.

Plugin: IBM_DB2DB

Control ID: ad3dcdc70c098432516775dd49854b9d77a6a0828be5f1b623b43f85cb425211