Enable SSL communication with LDAP server Details The communication layer between a DB2 instance and the LDAP server should be encrypted. It is recommended that the...
Encrypt user data across the network Details DB2 supports a number of authentication mechanisms. It is recommended that the DATA_ENCRYPT authentication mechanism be used. The DATA_ENCRYPT...
Establish a system maintenance group Details The sysmaint_group parameter defines the system administrator group that possesses the system maintenance (SYSMAINT) authority. It is recommended that...
Establish a system monitoring group Details The sysmon_group parameter defines the operating system groups with system monitor (SYSMON) authority. It is recommended that the sysmon_group...
Establish DAS administrative group Details The dasadm_group parameter defines the group name with DAS Administration (DASADM) authority for the DAS. It is recommended that...
Install the latest fix packs Details Periodically, IBM releases fix packs to enhance features and resolve defects, including security defects. It is recommended that the...
Remove default databases Details A DB2 Instance may come installed with default databases. It is recommended that the SAMPLE database be removed. Removing...
Restrict access to starting and stopping DB2 instances Details The DB2 instance manages the database environment and sets the configuration parameters. It is recommended that only administrators are...
Restrict access to the DB2 Activity Monitor utility Details The DB2 Activity Monitor is a management tool that monitors all application performance and concurrency, resource consumption, and SQL...
Restrict access to the DB2 Configuration Assistant utility Details The DB2 Configuration Assistant is a management tool that manages all connectivity setup to the DB2 instances and databases....