Convert RACF commands to TSS in order to implement CICS command Level Security.

book

Article ID: 49257

calendar_today

Updated On:

Products

CA Cleanup CA Datacom CA DATACOM - AD CA CIS CA Common Services for z/OS CA 90s Services CA Database Management Solutions for DB2 for z/OS CA Common Product Services Component CA Common Services CA Datacom/AD CA ecoMeter Server Component FOC CA Easytrieve Report Generator for Common Services CA Infocai Maintenance CA IPC Unicenter CA-JCLCheck Common Component CA Mainframe VM Product Manager CA Chorus Software Manager CA On Demand Portal CA Service Desk Manager - Unified Self Service CA PAM Client for Linux for zSeries CA Mainframe Connector for Linux on System z CA Graphical Management Interface CA Web Administrator for Top Secret CA CA- Xpertware CA Top Secret CA Top Secret - LDAP CA Top Secret - VSE

Issue/Introduction

Description:

Need to convert the following RACF commands to TSS in order to implement CICS command level security.

RDEFINE VCICSCMD CMDSAMP UACC(NONE)       
NOTIFY(sys_admin_userid) 
ADDMEM(AUTINSTMODEL, AUTOINSTALL, CONNECTION, 
DSNAME, TRANSACTION, TRANDUMPCODE, VTAM)

Solution:

The following is the converted RACF commands to TSS:

TSS ADDTO(deptacid) SPI(AUTOINST)       
TSS PERMIT(acidname) SPI(AUTOINST) ACCESS(xxxxxxx) 

TSS ADDTO(deptacid) SPI(CONNECTI)       
TSS PERMIT(acidname) SPI(CONNECTI) ACCESS(xxxxxxx) 

TSS ADDTO(deptacid) SPI(DSNAME)       
TSS PERMIT(acidname) SPI(DSNAME) ACCESS(xxxxxxx) 

TSS ADDTO(deptacid) SPI(TRANSACT)       
TSS PERMIT(acidname) SPI(TRANSACT) ACCESS(xxxxxxx) 

Set the CICS SIT parameter to XCMD=YES to activate SPI security checking.

Environment

Release:
Component: AWAGNT