3.1.11 Authenticate federated users at the instance level

Information

The fed_noauth parameter determines whether federated authentication will be bypassed at the instance. It is recommended that this parameter be set to no.

Solution

1. Attach to the DB2 instance
db2 => attach to $DB2INSTANCE
2. Run the following command from the DB2 command window-
db2 => update database manager configuration using fed_noauth no

See Also

https://workbench.cisecurity.org/files/162

Item Details

Category: ACCESS CONTROL

References: 800-53|AC-3

Plugin: Windows

Control ID: bd47d4b2ed535e08e6631b7f7f96a3ec1bb1f31a51297f06424b88e634cffa79