10.4 Restrict access to the DB2 Activity Monitor utility

Information

The DB2 Activity Monitor is a management tool that monitors all application performance and concurrency, resource consumption, and SQL statement usage of a database. It is recommended that access to the DB2 Activity Monitor utility be granted to authorized users only.

Secure this application where applicable, since it has vital statistics about the database.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

To revoke access to the DB2 Activity Monitor from any unnecessary users and groups:
1. Connect to the host
2. Review users and groups that have access to start the DB2 Activity Monitor
3. Revoke access from all unnecessary users and groups.

See Also

https://workbench.cisecurity.org/files/1654