Previous Topic: Changing Access Rule Set Control InformationNext Topic: Changing OS/390 and VSE Access Rule Entry Lists


Changing VM Access Rule Entry Lists

This screen changes VM rule entries in a rule set that already exists. It contains only summary information of the various rule entries. Enter an S (for SELECT) to see all of the details on the rule set.

To change OS/390 or VSE rule entries, press PF6.

M9PA‑2323 Change VM Access Rule Entry List (2.3.2.3) CA ACF2 for VM COMMAND ===> _________________________________________________________ TIME 17:12 Rulekey : ________ Entry 1 of 3 This ruleset also has MVS‑style rules not shown here. Press PF6 to view. A ___ WRE 001 Addr: V0191 Fn: PROFILE Ft: EXEC Uid: SHSADTLCAMS_____________ A Fpool: ________ Dir: ____________________________________________ ____________________________________________ ____________________________________________ 002 Addr: Fn: /_______ Ft: ________ Uid: ******TLC_____________ AA Fpool: SYSPROG Dir: VMRON.ACF2.SECURITY.REPORTS ______________________________________________ ______________________________________________ 003 Addr: _____ Fn: PROFILE Ft: XEDIT Uid: ******TLC_______________ A Fpool: TECH Dir: ENGINEERING.THERMONUCLEAR.DYNAMICS ENVIRONMENT.STABILIZATION.DATA _________________________________________________ PF1=Help 2=Print 3=Quit 4=Return 5=Execute 6=MVS<‑>VM PF7=Backward 8=Forward 9=Director 10=Previous 11=Next 12=Retrieve

A

Indicates the prefix area for this screen. The prefix area is where you select rules or enter information.

Rulekey

Specifies the key value of the rule set. The rulekey you specify can be up to eight characters long. You cannot mask this field.

CA ACF2 for VM logonid displays the address, filename, filetype, SFS filepool and SFS directory name as it currently exists. The UID displays the user that the rule is written for.

Use the following commands in the prefix area to display rule entries:

A (After)

Inserts the moved rule entry after this line (same as F)

B (Before)

Inserts the moved rule entry before this line (same as P)

D (Delete)

Deletes the rule entry on this line.

F (Following)

Inserts the moved rule entry following this line (same as A)

I (Insert)

Inserts a rule entry following this line.

M (Move)

Moves this rule entry.

P (Previous)

Inserts the moved rule entry previous to this line (same as B)

S (Select)

Selects this rule entry. CA ACF2 for VM logonid checks the rule to see if it is formatted like a VM rule or an OS/390 rule, then CA ACF2 for VM logonid displays the appropriate screen with additional information.

The three characters at the end of the line indicate the various access types. They stand for W=Write, R=Read, and E=Execute, respectively. Enter the access permission to be granted (A=Allow, L=Log, P=Prevent) under the appropriate access type. The above panel displays how you might define access privileges.

The user with a UID of SHSADTLCAMS has WRITE access to the PROFILE EXEC on the 191 disk. All users whose logonid starts with PER can READ and EXECUTE the TLCMAS.ACF2.SECURITY.REPORTS files in the SYSPROG filepool. Also, all users whose logonid begins with TLC can write to the PROFILE XEDIT file in the SFS directory named UNITED.STATES.ILLINOIS. COOK.CHICAGO.STREET.NUMBER.FLOOR in the TECH filepool.