This NIST 800-53 report is posted on the Internet to promote Version 3.0 of LJK/Security . The corresponding vulnerability report for your own system should be guarded more carefully, such as by being reviewed only from local HTML disk files rather than via a web server.

Return to Main Page
Invasive Testing CM_07_1_12

FIPS 199 High Impact (for ICS)

Findings Color Code
Satisfied
Other Than Satisfied - not assessed
Other Than Satisfied - failed

NIST SP 800-53A CM-07 .01(iii)

Question: Did that review of source code for the prohibition or restriction of functions, ports, protocols and services in add-on products (particularly networking products) show that all calls to VMS System Services or VMS Runtime Library Routines were followed by checking the return status code and taking appropriate action for all possible failure codes listed in the VMS documentation for that entrypoint ?

Answered by: BOSTON::TYLER

As part of Invasive Testing group: TEST_ADD_PROT

Answer: YES

This NIST 800-53 report is posted on the Internet to promote Version 3.0 of LJK/Security . The corresponding vulnerability report for your own system should be guarded more carefully, such as by being reviewed only from local HTML disk files rather than via a web server.