Previous Topic: NDVRUA10 Field DescriptionsNext Topic: Security Preauthorization


NDVRMA10 Field Descriptions

CA-E/DB nn.n volser SECURITY CLASS DETAIL mm/dd/yy NDVRMA10 USER ===> EDBADMIN DICTNAME ===> SRCNDVR MODE ===> UPDATE ACTION ===> MODIFY ************************** SECURITY CLASS INFORMATION *********************** NAME ===> NDVR-DDA COMMENT ===> DICTIONARY ADMINISTRATION CAPABILITIES MENU 1 2 3 4 5 6 7 8 9 MENU 1 2 3 4 5 6 7 8 CONTROL: Y N Y N N N Y N SIGNOUT: Y Y Y LOCK: Y Y Y Y Y Y Y Y Y AUTH: Y Y Y N CCID: Y N N N Y N N N Y ENTITY: Y Y Y Y Y Y STATUS: Y N N N Y Y Y Y USER: Y Y Y Y Y Y Y Y M-GRP: Y N N N Y N N N DICT: Y Y Y Y Y Y SIGNIN: Y SO-CCID: Y SO-USER: Y NO-USER: Y NO-CCID: Y NO-AUTH: Y LIM-AUT: Y NM-MODE: Y ARCHIVE: Y MIGRATE: Y DE-CCID: N BATCH: Y ENTITY: SCH DMC FIL TAS SUB USE DES REC SYS APO SET DIA APP ELE QFI PRC TAB FUN MODS: Y Y Y Y Y Y Y Y Y Y Y Y Y Y Y Y Y Y A-OPT: Y Y Y Y Y Y Y Y Y Y Y Y Y Y Y Y Y Y ENTITY: MOD PHY CLA ATT MAP LOG LIN MSG LOA LR PRO CCD DIC EUS CCI MGR STA SEC MODS: Y Y Y Y Y Y Y Y Y Y Y Y Y Y Y Y Y Y A-OPT: Y Y Y Y Y Y Y Y Y Y Y Y Y Y Y Y Y Y

CA Endevor/DB discrete function switches are at the top of the screen, procedures are in the middle, and entity attributes are at the bottom. All fields are defined so that a value of N denotes a restriction and Y denotes a permission. Remember that an N causes the restriction to take effect regardless of other Security Classes that are merged to arrive at the result. In other words, restrictions cannot be overridden.

Fields are described below:

ACTION

Action selected on the previous menu.

NAME

The name of the Security Class.

COMMENT

Any comment may be entered.

MENU

The six rows directly underneath the COMMENT field on this screen are used to control the Online and Batch front end functions that will be available to a user logged on under this Security Class. There are ten subfunction menus in the Online front end, and so there are ten groups of menu flags on the screen. Each group is labeled with the name for the corresponding Online front end subfunction screen. For example:

MENU    1  2  3  4  5  6  7  8  9

CONTROL  Y  N  Y  N  N  N  Y  N

The eight Y/N flags to the right of "CONTROL: " are used to allow or disallow the use of the eight options on the System Control Functions (NDVRUA00) screen. Thus, in the example above, a user signed on under this security class would have the use of options 1, 3, and 7 on the NDVRUA00 screen. The other options would be denied if attempted, and would not appear on that screen.

These same flags control a user's ability to use Batch front end commands and command options. In the example above, the user would be able to use the ADD SECURITY CLASS, MODIFY SECURITY CLASS, and DELETE SECURITY CLASS commands in PUNCH mode, but not in PROCESS mode. PUNCH mode is the CA Endevor/DB Batch equivalent of Browse actions in the CA Endevor/DB Online front end.

The full breakdown of MENU flags and the Online and Batch functions that they control is fully described in Appendix B, "Online/Batch Control Flags."

SIGNIN

Option

Description

Y

A user signed on under this security class can sign entities in and out for other users.

N

A user signed on under this security class can sign entities in and out only for him/her self.

SO-CCID
SO-USER

These options control the behavior of the security monitor when it is performing automatic signout (DICTIONARY descriptor AUTO-SO = Y). The AUTO-SO flag has precedence. If AUTO-SO is set to Y, automatic signout will occur, regardless of the SO-CCID and SO-USER flag settings. If AUTO-SO = N, automatic signout will not occur. SO-CCID and SO-USER determine whether automatic signout signs an entity out to the userid or the CCID under which the change occurs. The combinations are as follows:

SO-CCID

SO-USER

Description

Y

N

Automatic signout to CCID

Y or N

Y

Automatic signout to user

N

N

Automatic signout to user

NO-CCID

Option

Description

Y

The Change Monitor will not require a CCID before modifying an entity.

N

The Change Monitor will require a CCID before modifying an entity.

Note: If this is the Security Class for the Dictionary, make sure the security administrator is associated with a CCID before turning this field to N. Failure to do so may result in a universal inability to access the Dictionary.

NO-USER

Option

Description

Y

The Change Monitor will not require a USER before modifying an entity.

N

The Change Monitor will require a USER before modifying an entity.

Note: If this is the Security Class for the Dictionary, make sure the security administrator USER has been added before turning this field to N.

NO-AUTH
LIM-AUTH

These are used in conjunction to control the preauthorization procedures to be applied as follows:

Field

Description

NO-AUTH=Y, LIM-AUTH=Y or N

Preauthorization is ignored for this user. Any entity may be modified regardless of authorization.

NO-AUTH=N, LIM-AUTH=Y

User can modify entities that have been preauthorized to that user and entities that have not been preauthorized to anybody else.

NO-AUTH=N, LIM-AUTH=N

User must be preauthorized for update to all entities.

NM-MODE

Option

Description

Y

User can use the NDVRDLVR Utility command, which runs in "no-monitor" mode.

N

User cannot use the NDVRDLVR Utility command in "no-monitor" mode.

ARCHIVE

Option

Description

Y

User can run the NDVRARCO utility.

N

User cannot run the NDVRARCO utility.

MIGRATE

Option

Description

Y

User can run the NDVRBOOK utility with OPTION=MIGRATE to create migrate in CLEs on the target system, and the user can run program NDVRDCF2 to create migrate out CLEs on the source system.

N

User cannot run with migration-level authority.

DE-CCID

Option

Description

Y

User will run in DERIVED CCID mode.

N

User will not run in DERIVED CCID mode.

BATCH

Option

Description

Y

User can run the NDVRMISB Batch Management Facility.

N

User cannot run the NDVRMISB Batch Management Facility.

ENTITY

The three-character entity abbreviations used by CA Endevor/DB to represent DICTIONARY and CCDB entity types. These act as column headings for the next two fields. Refer to Appendix B, "CA Endevor/DB Entity Types," in the CA Endevor/DB for CA IDMS Batch Reference Guide for more information on entity types.

MODS

Option

Description

Y

User can modify entities of that type.

N

Users cannot update entities of that type.

A-OPT

This option takes precedence over the NO-AUTH and LIM-AUTH flags. If A-OPT = Y for a particular entity type, you may modify all entities of that type, regardless of preauthorization. Use this field to tailor preauthorization to entity types.

Option

Description

Y

User can modify entities of that type without preauthorization.

N

Preauthorization is required for users to modify this entity type.