Hi:

 

Wecurrently have the RACF SERVER class INACTIVE (I am completely unfamiliar 
withit, by the way).

I was askedto set up security for CICS LIBERTY, and according to the 
documentation I mustdefine some profiles in the SERVER class. However, I see 
that SERVER class hasa DEFTRETC=8, and activation of such classes must be 
carefully planned.

How can Iknow what applications, if any, (besides CICS LIBERTY) are making 
securitycalls in SERVER class, in order to contemplate them before class 
activation? Doyou know any “standard” z/OS application that make such calls?

Should Idefine a backstop ** profile in SERVER class with UACC(READ) to be safe?

Does havingsuch a backstop with UACC(READ) differs from our current situation 
where SERVERis INACTIVE? I know this depends upon how applications making the 
securitychecks in SERVER class treat the RC=04 code received when the class 
isinactive…But in the particular case of SERVER class, do applications 
generallyallow access when receiving RC=04 from RACF?

 
Thanks inadvance for your help,

Juan Mautalen

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [email protected] with the message: INFO IBM-MAIN

Reply via email to