Found this on the CA website and thought I would pass it along.
Reminder Notice to CA ACF2 and CA Top Secret for z/OS Customers December 06, 2007 To: CA ACF2 and CA Top Secret for z/OS Customers From: The CA Mainframe IAM Security Product Team Subject: CA Mainframe Security CICS Sign on Failures CA, Inc. is aggressively reminding all CA ACF2 and CA Top Secret for z/OS customers to proactively review their installations regarding a known CICS application access problem that will occur again on January 5, 2008. This problem was first reported and corrected on June 16, 2007. At that time, CA, Inc. provided HIPER (High Impact Product Error Report) maintenance for both products and notified all customers that the maintenance must be applied to prevent a recurrence of the problem. We are asking that you review the following excerpts from the June letter to verify that appropriate maintenance levels are in place and take any necessary action before January 5, 2008. Who should be concerned? CA ACF2 for z/OS customers with the CICS component installed for release r9, with PTFs QO87916 or QO87923 applied - prior to Service Pack 3 - who have not applied HIPER PTF QO89177. This HIPER PTF is included in release r9 Service Pack 3. CA Top Secret for z/OS customers with the CICS component installed for release r9 with PTFs QO86841, QO86842, or QO88140 applied - prior to Service Pack 3 - who have not applied HIPER PTF QO89178. This HIPER PTF is included in release r9 Service Pack 3. What will occur? The external user symptom is the inability to sign on to the CICS application during the period from January 5, 2008 (at 20:46:05.582 hours) through January 6, 2008 (at 15:51:25.059 hours). The customer may experience the following ABEND at CICS sign on: DFHAC2206 Transaction CESN failed with ABEND AEXZ. What causes the problem? The problem originates with a field that has not been properly initialized within a global storage area used by the CICS security component. As sign on requests are processed, this un-initialized area of storage is referenced. Residual data is erroneously interpreted as an explicit request to abort the sign on. Without the corrective maintenance applied, the residual data will mimic an explicit request to abort between January 5, 2008 (at 20:46:05.582 hours) and January 6, 2008 (at 15:51:25.059 hours). What are your next steps? CA has published HIPER solutions for both products, which you must apply if required: CA ACF2 (QO89177), CA Top Secret (QO89178). If you do not install these HIPER fixes, you may experience this problem on January 5, 2008. ---------------------------------------------------------------------- For IBM-MAIN subscribe / signoff / archive access instructions, send email to [EMAIL PROTECTED] with the message: GET IBM-MAIN INFO Search the archives at http://bama.ua.edu/archives/ibm-main.html

