On 2/23/2006 10:24 AM, Edward E. Jaffe wrote:
Just curious. How much of an exposure exists if a user knows the name of
a data set [s]he can't open?
In the context for which we developed that support (some of the
highly-classified government installations) the exposure is considered
significant. Otherwise I doubt we'd have implemented it.
In a more normal shop, I personally don't see much of an exposure.
However, we have had a few customers over the years who have asked for
something like this.
Walt Farrell, CISSP
z/OS Security Design, IBM
----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [EMAIL PROTECTED] with the message: GET IBM-MAIN INFO
Search the archives at http://bama.ua.edu/archives/ibm-main.html