This is a new security requirement introduced with APAR OA63209 for IBM product zDMF
GZD4221E The external security manager resource which covers the target data set, does not
meet migration requirements with universal access of NONE and no users or groups with any access.
Release : 16.0
IBM apar fix is AA65549
IBM has opened APAR OA65549 for this issue.
The Apar changes the RACROUTE EXTRACT request to a RACROUTE AUTH request
The original racroute extract request looks like this..
RACROUTE REQUEST=EXTRACT,CLASS='DATASET',RELEASE=1.9,SUBPOOL=229,
BRANCH=NO,DERIVE=NO,
ENTITYX=('dataset.name'),FIELDS=,
FLDACC=NO,GENERIC=ASIS,MSGSP=0,MATCHGN=YES,TYPE=EXTRACT,
WORKA=
FIELDS DATA AREA FOLLOWS
0003055B +000 00000004 E4D5C9E5 C1C3E240 C1C3D3C3 *....UNIVACS ACLC*
0003056B +010 D5E34040 E4E2C5D9 C9C44040 E4E2C5D9 *NT USERID USER*
0003057B +020 C1C3E240 *ACS *