Previous Topic: Configure CA LDAP Server Resource Authorizations for CA Compliance Manager Policies and ReportsNext Topic: Define Security Authorizations for CIA Real-Time Component (CA ACF2)


Define RRSAF Authorizations for CA Chorus for Security and Compliance Management

CA Chorus Security and Compliance Discipline requires a resource permission for the Resource Recovery Services Attachment Facility (RRSAF). RRSAF functions as the connection authorization mechanism for users connecting to DB2 systems. When an RRSAF connection is attempted, DB2 verifies whether the caller is authorized to use RRSAF. The security administrator must create a resource permission for each started task that is associated with the CA LDAP Server, CA DSI Server, CIA Real-Time, and CA Compliance Manager components.

The RRSAF resource checks are performed on every system that CA Compliance Manager writes to DB2. Perform these resource checks on every system that the warehouse or monitor components are running on.

Note: For more information about managing access to the RRSAF security environment, see the IBM DB2 Administration Guide. For more information about the IDENTIFY function for RRSAF, see the IBM Application Programming and SQL Guide.

RRSAF authorizations for CA DSI Server are defined in the following job:

This job was run during the Define the Security Authorizations for CA DSI Server procedure in this guide.

RRSAF authorizations for CIA Real-Time component are defined in the following jobs:

These jobs are run during the Define the Security Authorizations for CIA Real-Time Component process.

RRSAF authorizations for CA Compliance Manager are defined in the following jobs.

These jobs are run during the Define the Security Authorizations for CA Compliance Manager process.