is the local LU, and the LU through which communication is received is the partner LU.P

local

node .

The

RRSF

 

node

from

whose

point

 

 

partner logical

unit

(partner

LU)

 

.

Partner

LUs

are

 

 

 

 

 

 

 

of

view

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

defined

 

to

the

you

 

are

talking. For

 

example,

 

if

MVSA

and

MVSB

LUs

 

defined to remote systems; LUs

 

 

 

 

 

are

 

 

 

are

local

 

LUs. It

is

 

a

matter

of

a

poi

two

 

RRSF

nodes

that

 

are

 

logically

connected,

MVS

system

 

 

 

 

 

 

from

 

 

 

the

point

 

of

 

view

of

 

the

remote system,

 

MVSA's

point

of

view

MVSA

is

the

local

node,

 

view. From

 

 

 

 

and

from

to

that

system

are

 

local

LUs,

 

and

the

ones

MVSB's

 

point

of

view

 

MVSB

 

is

the

local

 

 

 

defined

 

 

 

 

 

node. See

also

the

partner

 

LUs.

 

 

 

 

 

 

 

 

 

 

 

 

 

 

remote

node.

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

MVS

are

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

A

partner

LU

might

or

might

not

be

on

the

same

sys

logical unit . A port providing formatting, stateas the local LU. When both LUs are on the same

 

synchronization,

and

other

 

high-level

services

 

through

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

is

initiate

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

system, the LU through which communication

which

an

end

user

communicates

with

another

 

end

 

user

 

 

LU,

and

the

LU

through

which

 

 

 

 

over

an

SNA

network.

 

 

 

 

 

 

 

 

 

 

 

 

 

 

is

the

local

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

communication is received is the partner

LU.

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

LU .

 

Seelogical

unit.

 

 

 

 

 

 

 

 

 

 

 

 

 

 

PassTicket .

 

An

alternative

 

to

the

 

RACF

password

that

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

permits workstations and client machines to

 

 

 

 

 

 

M

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

communicate

 

with

the

 

host. It

allows

a

user

to

gain

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

access

to

 

the

host

 

system

without

sending

the

RACF

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

main

system .

 

The

system

 

on

 

a

multisystem

RRSF password

across

the

 

network.

 

 

 

 

 

 

 

 

 

 

 

 

 

node

that

is

 

designated

to

receive

most

of

the

RRSF

 

In

computer

security,

 

a

string

of

 

charac

communications

sent

to

the

 

node.

 

 

 

 

 

 

password .

 

 

 

 

 

 

 

 

 

 

known to the computer system and a

user,

who

 

must

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

member

 

system

.

Any

one

of

the

MVS

 

system

 

 

specify

it

to

gain

 

full

or

limited

access

to

a sys

 

 

 

images

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

RACF,

the

password

in

a

 

multisystem

RRSF

node.

 

 

 

 

 

 

 

 

 

to

the data stored within it. In

 

 

 

 

 

 

 

 

 

 

used

 

to

verify

the

identity

of

the user.

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

multisystem

node

 

.

Seemultisystem

 

RRSF

node

 

 

password

synchronization

 

 

 

.

An

option

 

which

can

be

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

multisystem

RRSF

node

 

.

An

 

RRSF

 

node

consisting

 

specified

 

when

a

peer

user

ID

association is def

 

 

 

 

between two user IDs. If

password

synchronization

i

of

multiple MVS

system

images

 

that

share

the

 

 

same

 

 

 

for

a

user

ID

association,

then

whenever

RACF

 

database. One

of

the

systems

 

is

 

 

 

specified

 

 

 

designated

 

to

for

one

of

the

associated

user

IDs

is

 

be

the

main

system,

and

it

receives

most

 

password

 

of the RRSF

 

 

 

 

 

 

 

 

 

 

 

other user ID is

 

communications

sent

to

the

 

node.

 

 

 

 

 

 

changed, the password for the

 

 

 

 

 

 

 

 

automatically changed to the newly

defined

password.

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

MVS .

Multiple

virtual

storage. Implies

MVS/370,See

 

alsoautomatic

password

 

direction.

 

 

 

 

 

 

 

 

 

MVS/XA,

and

MVS/ESA.

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

permission

bits .

 

In

OpenEdition

 

MVS,

part

of

security

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

N

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

controls for directories and files

stored

in

 

the

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

hierarchical file system (HFS). Used

to

 

grant

 

read,

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

write, search (just directory), or

execute

(just

f

NetView

 

segment

 

.

 

The

portion of a RACF profileaccess to owner, owner's group, or

all

others.

 

 

 

containing

NetView

logon

information.

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

node . See RRSF node.

O

posit . A number specified for each class in the cl descriptor table that identifies a set of flags th RACF processing options. See the keyword description

for posit OS/390in Security Server (RACF) Macros and Interfaces.

OVM segment

.

The

portion of a

RACF profile process . (1) A

function being

performed

or

waiting to

containing

OVM

logon

information.

be

performed.

(2) An executing

function,

or

one waiti

 

 

 

 

to

execute. (3) A function, createdfork() request,by a

 

owner

.

The user or

group who

creates

a profile,

or

is

 

sections:

 

 

named the owner

of

a

profile. The

owner

with

three

logical

 

 

can modify,

 

 

 

 

 

 

 

list,

or

delete

the

profile.

 

 

Ÿ

Text,

which is the function's instructions.

 

 

 

 

 

 

 

 

 

Ÿ

Data,

which

the

instructions

use but do not chang

 

 

 

 

 

 

 

 

Ÿ

Stack,

which is a push-down, pop-up save area of

 

 

 

 

 

 

 

 

 

the

dynamic

data

that

the

function operates

upon.

 

 

 

 

 

 

 

 

The

 

three

types

of

processes

are:

 

 

 

 

 

 

 

 

 

Ÿ

User

processes,

which

are

associated with

a us

 

 

 

 

 

 

 

 

 

a

workstation

 

 

 

 

 

 

68

OS/390

V1R2.0

Security

Server

(RACF)

Planning: Installation

and

Migration

 

 

 

 

Page 92
Image 92
IBM GC28-1920-01 manual Seelogical, Seemultisystem