On Tue, 8 Dec 2009 10:44:06 -0600, Miller, Pat <pat.mil...@trs.state.tx.us> wrote:
>There are no RACF messages logged and the RACF police assure me we're >RACF authorized. There would not be any messages, and you have to have been authorized at the time you logged on; any changes after logon would not have any effect. Perhaps the RACF administrators are mistaken, or perhaps they neglected to issue an appropriate SETR RACLIST(TSOAUTH) REFRESH. But do not depend on lack of messages for this case to indicate they have RACF configured correctly. During logon the TSO/E TMP queries your authorities, and saves them. Since you have not actually tried to use any of those authorities, issuing messages from RACF would not be appropriate, and so none are issued. -- Walt Farrell, CISSP IBM STSM, z/OS Security Design ---------------------------------------------------------------------- For IBM-MAIN subscribe / signoff / archive access instructions, send email to lists...@bama.ua.edu with the message: GET IBM-MAIN INFO Search the archives at http://bama.ua.edu/archives/ibm-main.html