10.1 Restrict access to the DB2 Control Center

Information

The DB2 Control Center is a management tool that manages all registered DB2 instances and databases. It is recommended that access to the Control Center utility be granted to authorized users only.

Secure this application where applicable, since it has access to the DB2 instance name, the host it resides on, and the database name.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

To revoke access to the DB2 Control Center:
1. Connect to the host
2. Review users and groups that have access to start the DB2 Control Center
3. Revoke access from any unnecessary users.

See Also

https://workbench.cisecurity.org/files/1654