On Tue, 8 Dec 2009 10:44:06 -0600, Miller, Pat <pat.mil...@trs.state.tx.us>
wrote:

>There are no RACF messages logged and the RACF police assure me we're
>RACF authorized.

There would not be any messages, and you have to have been authorized at the
time you logged on; any changes after logon would not have any effect.

Perhaps the RACF administrators are mistaken, or perhaps they neglected to
issue an appropriate SETR RACLIST(TSOAUTH) REFRESH.

But do not depend on lack of messages for this case to indicate they have
RACF configured correctly.  During logon the TSO/E TMP queries your
authorities, and saves them.  Since you have not actually tried to use any
of those authorities, issuing messages from RACF would not be appropriate,
and so none are issued.

-- 
Walt Farrell, CISSP
IBM STSM, z/OS Security Design

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to lists...@bama.ua.edu with the message: GET IBM-MAIN INFO
Search the archives at http://bama.ua.edu/archives/ibm-main.html

Reply via email to