
Securing NOFT
BP-FILE-NOFT-01 NOFT should be secured “UUNU”.
BP-OPSYS-OWNER-02 NOFT should be owned by SUPER.SUPER.
BP-OPSYS-FILELOC-02 NOFT must reside in $SYSTEM.SYSTEM.
If available, use Safeguard software or a third party object security product to grant
access to NOFT object files only to users who require access in order to perform their
jobs.
BP-SAFE-NOFT-01 Add a Safeguard Protection Record to grant appropriate
access to the NOFT object file.
Discovery Questions Look here:
OPSYS-OWNER-02 Who owns the NOFT object file? Fileinfo
FILE-POLICY Who is allowed to execute NOFT on the system? Policy
FILE-NOFT-01
SAFE-NOFT-01
Is the NOFT object file correctly ...