How can I create security checks in the Secure Configuration Manager console for iSeries servers? (NETIQKB70509)

  • 7770509
  • 13-Jul-2007
  • 18-Oct-2007

Environment

Fact: NetIQ Security Solutions for iSeries

Fact: NetIQ Security Solutions for iSeries 8.0

Fact: Secure Configuration Manager 5.6

Situation

Goal: How can I create security checks in the Secure Configuration Manager console for iSeries servers?

Goal: What does PTF G1C03002 do?

Goal: Has Group PTF G1C03001 been superceded?

Resolution

Fix:

This group PTF provides the ability to create your own security checks in the Secure Configuration Manager console for iSeries servers. You can use custom security checks to handle your unique security needs. In addition to the wizard provided in the Secure Configuration Manager console, you can use a programming language such as TCL to create queries outside of the console, and then import those checks into the console to include in policy templates. To create custom security checks for the iSeries agent in Secure Configuration Manager, you must be running Secure Configuration Manager version 5.6 with hotfix 70509 applied.

This PTF allows you to use the following objects and their associated attributes when creating iSeries custom security checks:
? Authorization List
? Check object integrity
? Check system
? Command information
? Exit point information
? Host
? Integrated File System
? Job descriptions
? Message queue
? Network attributes
? Network status
? Object Authorities
? Output queue information
? Profiles
? PTF status
? QSYS.LIB file system objects
? Script Content
? Software resources
? Subsystem autostart job entries
? Subsystem communications entries
? Subsystem information
? Subsystem job queue entries
? Subsystem pools
? Subsystem prestart job entries
? Subsystem remote location
? Subsystem routing
? Subsystem work station name entries
? Subsystem work station type entries
? System disk status
? System jobs
? System pools
? System status
? System values

This group PTF supersedes PTF 1C03016, which provides the ability to limit which journal type entries are sent to Security Manager Log Manager and improves performance of iSeries data collection. For more information about PTF 1C03016, see 1C03016Cover.htm.

It also supersedes G1C03001.

Additional Information

Formerly known as NETIQKB70509