On 2/23/2006 10:24 AM, Edward E. Jaffe wrote:
Just curious. How much of an exposure exists if a user knows the name of a data set [s]he can't open?


In the context for which we developed that support (some of the highly-classified government installations) the exposure is considered significant. Otherwise I doubt we'd have implemented it.

In a more normal shop, I personally don't see much of an exposure. However, we have had a few customers over the years who have asked for something like this.

        Walt Farrell, CISSP
        z/OS Security Design, IBM

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [EMAIL PROTECTED] with the message: GET IBM-MAIN INFO
Search the archives at http://bama.ua.edu/archives/ibm-main.html

Reply via email to