Previous Topic: Control the SAF Interface (BES.SECURITY)

Next Topic: Activate the SAF Interface

BES.SECURITY Control Parameter Format

The BES.SECURITY profile must be defined to the CA@BES before the SAF Interface will be initialized. The BES.SECURITY control parameter has the following format:

$KEY(BES.SECURITY) TYPE(BES) 
$OWNER(ownerid)
$USERDATA(status)              
  UID(-) ALLOW
$KEY

Fully-qualified name “BES.SECURITY”.

TYPE(BES)

Indicates the entry is a CA@BES resource.

$OWNER(ownerid)

Specifies the owner of the rule. You can specify up to 24 characters in the $OWNER control statement. CA ACF2 provides the $OWNER statement in case you want to track ownership of a rule.

$USERDATA(username)

Used to activate or inactive the CA Tape Encryption SAF Interface.

status

Specifies the global processing parameter to activate or inactivate the CA Tape Encryption SAF Interface component. Options for this parameter are as follows:

ACTIVE

Specifies the SAF Interface is active for all BES subsystems on this LPAR.

INACTIVE

Specifies the SAF Interface is inactive for all BES subsystems on this LPAR. This is the default setting if not specified.

UID(-) ALLOW

Specifies global access to this rule.