How do I stop SECURITY administrators from being to access datasets and resources?

book

Article ID: 17958

calendar_today

Updated On:

Products

CA ACF2 CA ACF2 - DB2 Option CA ACF2 for zVM CA ACF2 - z/OS CA ACF2 - MISC CA PanApt CA PanAudit

Issue/Introduction

Description:

I have an audit requirement that my ids with SECURITY are not allowed to access the system datasets and resources. Is there a way to do that?

Solution:

ACF2 has two bit settings that will require a logonid with SECURITY to go through ACF2 rule validation. RULEVLD is for datasets, and RSRCVLD is for resources. Just add the bits to the loognid, have the SECURITY id logoff and back on, and they will now go through rule checking just like any other user.

CHANGE logonid RULEVLD RSRCVLD

Environment

Release:
Component: ACF2MS