Thanks Mark.  I did as you suggested, and used one of our already defined high 
level qualifiers(OMVSU) for this.  I was thinking long term, that if I treated 
the physical dataset like the other user datasets that they would get cleaned 
up automatically when people quit, etc.

Giving OMVS the permission did the trick.

Thanks All.

Dave

_________________________________________________________________
Dave Jousma
Assistant Vice President, Mainframe Services
[email protected]
1830 East Paris, Grand Rapids, MI  49546 MD RSCB1G
p 616.653.8429
f 616.653.8497


-----Original Message-----
From: IBM Mainframe Discussion List [mailto:[email protected]] On Behalf Of 
Mark Zelden
Sent: Friday, April 17, 2009 8:55 AM
To: [email protected]
Subject: Re: Automount user ZFS with allocuser

On Fri, 17 Apr 2009 06:54:58 -0400, Jousma, David <[email protected]> wrote:

>Well, the manual seems to indicate it will do either.  I'm also wondering
what userid the allocation is occurring under.  The userid of the user, or
the userid of OMVS(OMVSKERN) in our case.  Maybe that userid doesn’t have
the authority to create user datasets.
>

I would give the userid for OMVS and your ZFS STCs all authority to
all zFS data sets.  I would do the same for HFS files for OMVS.

You may want to use a system HLQ instead of userid.   Users don't
need access to user HFS / zFS file system data sets, only the 
sysprogs / storage admins do.   In one of our sysplexes we changed
that when we migrated to zFS for user file systems.  There is a documented
possible security exposure if you use the userid as the HLQ.

Mark
--
Mark Zelden
Sr. Software and Systems Architect - z/OS Team Lead
Zurich North America / Farmers Insurance Group - ZFUS G-ITO
mailto:[email protected]
z/OS Systems Programming expert at http://expertanswercenter.techtarget.com/
Mark's MVS Utilities: http://home.flash.net/~mzelden/mvsutil.html

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [email protected] with the message: GET IBM-MAIN INFO
Search the archives at http://bama.ua.edu/archives/ibm-main.html

This e-mail transmission contains information that is confidential and may be 
privileged.   It is intended only for the addressee(s) named above. If you 
receive this e-mail in error, please do not read, copy or disseminate it in any 
manner. If you are not the intended recipient, any disclosure, copying, 
distribution or use of the contents of this information is prohibited. Please 
reply to the message immediately by informing the sender that the message was 
misdirected. After replying, please erase it from your computer system. Your 
assistance in correcting this error is appreciated.

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [email protected] with the message: GET IBM-MAIN INFO
Search the archives at http://bama.ua.edu/archives/ibm-main.html

Reply via email to