CA Top Secret TSS REFRESH Command Doesn't Work!

book

Article ID: 52420

calendar_today

Updated On:

Products

CA Cleanup CA Datacom CA Datacom - AD CA CIS CA Common Services for z/OS CA 90s Services CA Database Management Solutions for DB2 for z/OS CA Common Product Services Component CA Common Services CA Datacom/AD CA ecoMeter Server Component FOC CA Easytrieve Report Generator for Common Services CA Infocai Maintenance CA IPC Unicenter CA-JCLCheck Common Component CA Mainframe VM Product Manager CA Chorus Software Manager CA On Demand Portal CA Service Desk Manager - Unified Self Service CA PAM Client for Linux for zSeries CA Mainframe Connector for Linux on System z CA Graphical Management Interface CA Web Administrator for Top Secret CA CA- Xpertware CA Top Secret CA Top Secret - LDAP CA Top Secret - VSE

Issue/Introduction

Description

A region acid has been PERMITted access to a resource.

Despite a :

TSS REFRESH(acid) JOBNAME(*)
the acid is still NOT authorized to access the resource.

When the region is recycled, the region acid can access the resource.

Solution

The TSS REFRESH(acid) command works correctly and flags the security environment for this region acid to be refreshed.

The region acid will be refreshed:

  • On next security call done for the region acid.
  • And, for some resource classes the security call is issued in cross memory mode and the REFRESH doesn't take place.

Example: CFSKEYS is an example resource class, where security calls is issued in cross memory mode from the CFS address space.

To have the region acid REFRESHed:

  1. Issue a
    TSS REFRESH(Acid) JOBNAME(*) 
    for the region acid.
  2. AND submit a dummy job for the region acid to generate a security call in non-cross memory mode.

Environment

Release:
Component: AWAGNT