CWWKS1100A With Top Secret After Maintenance For IBM PI96930
search cancel

CWWKS1100A With Top Secret After Maintenance For IBM PI96930

book

Article ID: 130510

calendar_today

Updated On:

Products

Top Secret Top Secret - LDAP

Issue/Introduction

Receiving the following z/OSMF messages:

ÝAUDIT ¨ CWWKS1100A: Authentication did not succeed for user ID xxxxxxxx. An invalid user ID or password was specified.

from z/OSMF after applying maintenance for IBM's PI96930.

Environment

Release:
Component: TSSMVS

Resolution

New functionality was added by the IBM APAR is why the problem is occurring.

ACID IZUSVR needs to be given the PROFILE IZUSECAD so it will have the proper authorization to change ownership of the /global/zosmf/configuration/workflow/izu.provisioning.security.config.properties file.

The security violation is not occurring on the z/OS side of things but the USS side of things, so a TSSOERPT will need to be run to get more details.

Try:
- Connect IZUSVR to the IZUSECAD profile via:

TSS ADD(IZUSVR) PROFILE(IZUSECAD).

This assumes the same name is used in RACF GROUPS for Top Secret PROFILES. 

- Stop the server.
- DELETE the existing /global/zosmf/configuration/workflow/izu.provisioning.security.config.properties file.
- Restart the server and the properties file will get re-created with the correct ownership and permissions.