ACF2 LDS relationship with server decommission
search cancel

ACF2 LDS relationship with server decommission

book

Article ID: 205243

calendar_today

Updated On:

Products

ACF2 ACF2 - DB2 Option ACF2 for zVM ACF2 - z/OS ACF2 - MISC LDAP SERVER FOR Z/OS PAM CLIENT FOR LINUX ON MAINFRAME WEB ADMINISTRATOR FOR TOP SECRET

Issue/Introduction

The server we connect to via LDS (abcd:636) is scheduled to be decommissioned. If this server and connection is going away, is it safe to assume that IDs would no longer need the LDS attribute?

 

 

Environment

Release : 16.0

Component : CA ACF2 for z/OS

Resolution

That depends on if the LDAP server going away is the only active LDAP record. If there are other LDAP records, then the LDS attribute on users would still be needed.

If there are not other LDAP records, the recommended approach would be to:

  • stop LDS 'F ACF2,lds(stop)'
  • remove the LDS Option record
  • remove the LDS LDAP records
  • remove the LDS attributes from logonids
  • update the GSO OPTS record