Previous Topic

Next Topic

Book Contents

Book Index

ACF2/SAF Security

The IOA interface uses the general resource class. A different user‑defined class can be used for IOA by updating the appropriate ACF2 table (meaning, the CLASMAP definition in ACF2 version 6.x, or the SAFMAPS definition in ACF2 version 5.2), and setting the IOACLASS parameter.

The following resource classes are used within IOA ACF2/SAF security:

Table 9 ACF2/SAF Resource Classes

Class

Description

FACILITY

Controls a user’s access to IOA protected elements. This class is mapped to the ACF2 resource type CMF or other defined user type.

DATASET

Controls a specified user’s ID access to datasets

The SAF compatibility mode option must be used. The System Authorization Facility (SAF) is a basic component of MVS that enables resource managers of the operating system to request security services. The ACF2/SAF interface translates SAF security requests into ACF2 requests. SAF is invoked by issuing a RACROUTE request. For more information, see the CA-ACF2 System Programmer’s Guide.

Parent Topic

Security Resource Classes