Define a SYSTEM rule for allowing the server to validate passwords:
ACCEPT server_userid VALIDATE
The directory entries for each TCP/IP server that uses CA VM:Secure for security validation should contain an IUCV DUALPASS directory statement. Use the VMSECURE EDIT command to insert this record for the FTP, NFS, and REXEC service virtual machines:
IUCV DUALPASS
Note: The IUCV DUALPASS statement is not required; however, without this record, if the FTP server tries to validate a user ID/password pair when the CA VM:Secure server is down for some reason, validation fails with a specification check. With the IUCV DUALPASS statement in place, the validation is performed through an alternate path.
| Copyright © 2011 CA. All rights reserved. | Tell Technical Publications how we can improve this information |