Found this on the CA website and thought I would pass it along.




Reminder Notice to CA ACF2 and CA Top Secret for z/OS Customers

December 06, 2007
To: CA ACF2 and CA Top Secret for z/OS Customers 
From: The CA Mainframe IAM Security Product Team 
Subject: CA Mainframe Security CICS Sign on Failures

CA, Inc. is aggressively reminding all CA ACF2 and CA Top Secret for z/OS 
customers to proactively review their installations regarding a known CICS 
application access problem that will occur again on January 5, 2008. This 
problem was first reported and corrected on June 16, 2007. At that time, CA, 
Inc. provided HIPER (High Impact Product Error Report) maintenance for both 
products and notified all customers that the maintenance must be applied to 
prevent a recurrence of the problem.

We are asking that you review the following excerpts from the June letter to 
verify that appropriate maintenance levels are in place and take any necessary 
action before January 5, 2008.
Who should be concerned?

CA ACF2 for z/OS customers with the CICS component installed for release r9, 
with PTFs QO87916 or QO87923 applied - prior to Service Pack 3 - who have not 
applied HIPER PTF QO89177. This HIPER PTF is included in release r9 Service 
Pack 3.
CA Top Secret for z/OS customers with the CICS component installed for release 
r9 with PTFs QO86841, QO86842, or QO88140 applied - prior to Service Pack 3 - 
who have not applied HIPER PTF QO89178. This HIPER PTF is included in release 
r9 Service Pack 3.
What will occur?

The external user symptom is the inability to sign on to the CICS application 
during the period from January 5, 2008 (at 20:46:05.582 hours) through January 
6, 2008 (at 15:51:25.059 hours). The customer may experience the following 
ABEND at CICS sign on: DFHAC2206 Transaction CESN failed with ABEND AEXZ.

What causes the problem?

The problem originates with a field that has not been properly initialized 
within a global storage area used by the CICS security component. As sign on 
requests are processed, this un-initialized area of storage is referenced. 
Residual data is erroneously interpreted as an explicit request to abort the 
sign on. Without the corrective maintenance applied, the residual data will 
mimic an explicit request to abort between January 5, 2008 (at 20:46:05.582 
hours) and January 6, 2008 (at 15:51:25.059 hours).
What are your next steps?

CA has published HIPER solutions for both products, which you must apply if 
required: CA ACF2 (QO89177), CA Top Secret (QO89178). If you do not install 
these HIPER fixes, you may experience this problem on January 5, 2008.

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [EMAIL PROTECTED] with the message: GET IBM-MAIN INFO
Search the archives at http://bama.ua.edu/archives/ibm-main.html

Reply via email to