|
Abstract: . . . reduce the potential for corruption of computer programs; strict control should be maintained over access to program source libraries as follows (see also 8.3). c) IT support staff should not have unrestricted access to program source libraries. PowerLock NetworkSecurity can be used to block or control all user, regardless of special authorities or OS authority levels, network service access to the AS/400 system. g) An audit log should be maintained of all accesses to program source libraries. PowerLock applications can be used to track access to files and libraries on the AS/400 system. . . . . . . real-time security monitoring (PowerLock NetworkSecurity) 2) the date and time of key events; Yes, 24/7 real-time security monitoring (PowerLock NetworkSecurity) 3) the types of events; Yes, 24/7 real-time security monitoring (PowerLock NetworkSecurity) 4) the files accessed; Yes, 24/7 real-time security monitoring (PowerLock NetworkSecurity) 5) the program/utilities used; Yes, 24/7 real-time security monitoring (PowerLock NetworkSecurity) b) all privileged operations, such as: 1) use of supervisor account; Yes, 24/7 real-time security monitoring (PowerLock NetworkSecurity) 2) system start-up and stop; Page 15 Yes, using SecurityAudit 3) I/O device attachment/detachment; Yes, using SecurityAudit c) unauthorized access attempts, such as: 1) failed attempts; Yes, 24/7 real-time monitoring of network failed attempts; OS logon failed attempts. 2) access policy violations and notifications for network gateways and firewalls; Yes, 24/7 real-time monitoring of all network access to the AS/400 . . . . . . iso 17799 Page 1 PowerLock & ISO 17799 Standards Page 2 Summary PowerLock & ISO 17799 Compliance ISO 17799 is a comprehensive set off controls comprising best practices in information security. It’s essentially an internationally recognized generic information security standard. In this paper, PowerTech describes how its tools and applications can help organizations comply or adhere to security standards related to AS/400 systems. The following outlines ten prime sections that comprise the standard and where PowerLock can be leveraged: Security Policy PowerLock Network Security, PowerLock SecurityAudit . . . --3000,3,500,2418,31480
|