Previous Topic: Examples of SAF Security Calls—Command Security

Next Topic: Command Security User Exit (XCOMEX13)


Command Security for Consoles That Are Not Logged On

When the CA XCOM Data Transport server receives a CA XCOM Data Transport command from a console that is not logged on with a specific user ID, the server examines the console flags of the console. It determines on the basis of the console flags whether the console has the authority to issue a specific command.

In general, commands that request information (access level READ) are allowed from any console. On the other hand, the STOP (XCOM) command, which requires the access level CONTROL, can be issued only from the master console. The commands at the access level UPDATE require that the console have SYS, I/O, or CONS authority. All of these restrictions can be overridden through a user-written User Exit13.