>Our tech LPAR has been running VSM ALLOWUSERKEYCSA(NO) since last >Saturday. In the dark days (like six months ago), I never thought I'd see >the day when we'd have even one LPAR IPL successfully with this option >set.
It took us a measly hour after setting allowuserkeycsa to no 'on the fly' in a sysprog test system to be swamped with dumps and do an unscheduled IPL (with the parm set back to yes). BMC is our culprit, and they admit in their apar ba06741: "After many attempts to solve this that failed, it was decided that we could not support IMFEXEC SUBMIT in this context." Unfortunately this function is used heavily in our installation, and the suggested 'replacement' cannot be used. If I want to get rid of the integrity exposure, not only would I have to battle the vendor, first I would have to battle my colleagues. :-( Regards, Barbara Nitz -- Psssst! Schon vom neuen GMX MultiMessenger gehört? Der kanns mit allen: http://www.gmx.net/de/go/multimessenger ---------------------------------------------------------------------- For IBM-MAIN subscribe / signoff / archive access instructions, send email to [EMAIL PROTECTED] with the message: GET IBM-MAIN INFO Search the archives at http://bama.ua.edu/archives/ibm-main.html

