search cancel

TSS LDS SYNC wrong using MOVE of one ACID USER to different ZONE

book

Article ID: 255404

calendar_today

Updated On:

Products

Top Secret LDAP SERVER FOR Z/OS

Issue/Introduction

When using TSS LDS to move an ACID type USER from one division to another division where the zones are different, the TSS LDS transmits for the SYNC only the change made to the Division field but does not change either the ZONE or the department.

The TSS, if the division belongs to another zone, updates the security file correctly.

The LDS component transmits only the varied field.

Environment

Release : 16.0

Resolution

When one moves DCA to VCA the owner of the acid becomes the division acid. This update would be sent via LDS to the connected system.

The acid has a pointer to the owning acid. When the owning acid is changed that information is routed to LDS. The other fields like zones are displayed during a list command because TSS goes up the chain of ownership internally.

Only the information that is updated on the record is sent.

For example:

  USER                     Lowest 

    |   

 Department                 |

    |                      To

 Division

    |

   Zone                     |   

    |

   MSCA                   Highest