Previous Topic: CA ACF2 Data Set Selection Profiles

Next Topic: CA Top Secret Commands

CA ACF2 Resource Profiles

The following rule formats are used when defining CA Tape Encryption system commands, encryption keys, and utility profiles to CA ACF2 using ACFBCOMP:

SAF Interface Control Parameter:
$KEY(BES.SECURITY) TYPE(BES)
$OWNER(BES     )
$USERDATA(ACTIVE | INACTIVE)
 UID(uid-value) ALLOW
 UID(uid-value) PREVENT
Application Management Profiles:
$KEY(BESn.CAEKMAPI) TYPE(BES) 
$OWNER(BES) 
UID(uid-value) ALLOW 
UID(uid-value) PREVENT
Command Protection Profiles:
$KEY(BESn.command-name) TYPE(OPR)
$OWNER(BES     )
 UID(uid-value) ALLOW
 UID(uid-value) PREVENT
Key Protection-Digital Certificates:
$KEY(BESn.KEYCERT.certificate-name) TYPE(BES)
$OWNER(BES     )
 UID(uid-value) ALLOW
 UID(uid-value) PREVENT
Key Protection-Digital Code Books:
$KEY(BESn.KEYCODE.code-book-name) TYPE(BES)
$OWNER(BES     )
 UID(uid-value) ALLOW
 UID(uid-value) PREVENT
Key Protection-Symmetric Keys:
$KEY(BESn.KEYSYMM.symmetric-key-name) TYPE(BES)
$OWNER(BES     )
 UID(uid-value) ALLOW
 UID(uid-value) PREVENT
Utility Protection Profiles:
$KEY(BESn.UTILITY.TBEKMUTL|TBESHOW) TYPE(BES)
$OWNER(BES     )
 UID(uid-value) ALLOW
 UID(uid-value) PREVENT