Previous Topic: CA ACF2 for VM Diagnose LimitingNext Topic: How CA ACF2 for VM Uses SAF and the RPIUCMS Module


Understanding SAF

The IBM System Authorization Facility (SAF) provides an interface that can direct control to all external security products, including CA ACF2 for VM. These developments make CA ACF2 for VM compliant with IBM SAF. CA ACF2 for VM processes all SAF calls by default. In the VM implementation of SAF, a service machine that is running a product that performs SAF calls invokes a router module called RPIUCMS. The RPIUCMS module used by CA ACF2 for VM is supplied by the CA‑ESM Release 1.1 or above component of CA‑CIS.

This chapter discusses the following topics:

This section contains the following topics:

How CA ACF2 for VM Uses SAF and the RPIUCMS Module

Components of the CA ACF2 for VM SAF Interface

Translating Resource Classes (CLASMAP)

Defining Environments for SAF Calls (SAFDEF)