In <[email protected]>, on
03/15/2015
   at 02:26 PM, Paul Gilmartin
<[email protected]> said:

>It is the responsibility of an AC(0) routine residing in an 
>authorized library, then, to perform only documented actions, lest 
>no side effect threatens system integrity.

It is not the responsibility of a module to test whether it was
invoked with more authorization than it was designed for; it is the
responsibility of the caller to verify that it does not amplify the
authorization of the callee beyond what it is documented as
supporting.
 
-- 
     Shmuel (Seymour J.) Metz, SysProg and JOAT
     ISO position; see <http://patriot.net/~shmuel/resume/brief.html> 
We don't care. We don't have to care, we're Congress.
(S877: The Shut up and Eat Your spam act of 2003)

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [email protected] with the message: INFO IBM-MAIN

Reply via email to