Charles, Thank you for your reply. It sounds like the individual NETRC files may not really be a security disaster but more of a maintenance disaster. I would agree, it is very inconvenient to require each user to update the NETRC file each time the password(s) on the remote system(s) change. Not perfect but so far not causing that much pain here (at least not that I am aware of).
I hope as you progress through your solution I see more details here on IBM MAIN. Who knows, maybe I'll get a chance to change our process once you work out all the details and create the cook book for me :) Regards, Greg >Perhaps I am not understanding you. If you are saying "give each user their >own NETRC file with UACC(NONE)" I think the objection would be the >maintenance headache. Each user's password would have to be maintained once >in RACF (two instances) and once in their NETRC. ---------------------------------------------------------------------- For IBM-MAIN subscribe / signoff / archive access instructions, send email to [EMAIL PROTECTED] with the message: GET IBM-MAIN INFO Search the archives at http://bama.ua.edu/archives/ibm-main.html

