>I still don't see how anyone can hack a userid and password and log on to a >RACF protected system. If you have security set up correctly, you only get 3 >tries or so, and then the ID is revoked.
Brute force against a copy of the RACF D/B. Solution: protect the D/B and all copies. As for the "3 strikes" rule, I agree. It's deja vu for the very first time. This discussion thread has been done over on the RACF-L. - Too busy driving to stop for gas! ---------------------------------------------------------------------- For IBM-MAIN subscribe / signoff / archive access instructions, send email to [EMAIL PROTECTED] with the message: GET IBM-MAIN INFO Search the archives at http://bama.ua.edu/archives/ibm-main.html

