Previous Topic: SecurityNext Topic: Command Submission on Behalf of Another User


OMVS Security

The authorized program facility (APF) identifies programs that validate user identities. Event Management installation scripts marked the appropriate programs using the "extattr +ap" command.

Ensure that the user ID that Event Management runs under has read access to the BPX.DAEMON, BPX.SERVER, and BPX.SUPERUSER resources and is assigned UID(0). The ID that runs the Java server and web server must have UID(0). Depending on your z/OS release level and the specific security options you have specified, you need access to the BPX.SERVER resource. Also, the user ID that Event Management runs under can need surrogate permission to any user that is used with Event Management.

If your site requires accurate accounting information to use the Event Management processes, the OMVS segment for the user contains a valid account code (for example, RACF:WORKATTR INFORMATION contains WAACCNT=xxxxx).