DB2X-00-008300 - DB2 must disable network functions, ports, protocols, and services deemed by the organization to be nonsecure, in accord with the Ports, Protocols, and Services Management (PPSM) guidance

Information

Use of nonsecure network functions, ports, protocols, and services exposes the system to avoidable threats.

Solution

Use the following commands to set the protocol and ports as per PPSM guidance:

$db2 update dbm cfg using svcename [service_name | port_number]

$db2 update dbm cfg using ssl_svcename [ssl_service_name | port_number]


Note: http://www.ibm.com/support/knowledgecenter/en/SSEPGG_10.5.0/com.ibm.db2.luw.admin.sec.doc/doc/t0025241.html

See Also

https://dl.dod.cyber.mil/wp-content/uploads/stigs/zip/U_IBM_DB2_V10-5_LUW_V2R1_STIG.zip

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(1)(b), CAT|II, CCI|CCI-001762, Rule-ID|SV-213726r879756_rule, STIG-ID|DB2X-00-008300, STIG-Legacy|SV-89269, STIG-Legacy|V-74595, Vuln-ID|V-213726

Plugin: Unix

Control ID: 0d2efa976dce8769194d3195942daca7bd9931067828e51775b739c7fef0755c