z/OS Security Server RACROUTE Macro Reference
Previous topic |
Next topic
|
Contents
|
Contact z/OS
|
Library
|
PDF
Contents (exploded view)
z/OS Security Server RACROUTE Macro Reference
SA23-2294-00
Abstract for Security Server RACROUTE Macro Reference
z/OS Version 2 Release 1 summary of changes
How to use the RACF system macros
Reading the macro instructions
Continuation lines
RACF system macros
RACROUTE: Router interface
Keyword and parameter cross-reference for RACROUTE
Addressing considerations
Cross memory considerations
RACROUTE (standard form)
Return codes
Example 1
Example 2
RACROUTE (list form)
RACROUTE (execute form)
RACROUTE (modify form)
System macros
RACROUTE REQUEST=AUDIT: General-purpose security-audit request
RACROUTE REQUEST=AUDIT (standard form)
Return codes and reason codes
Example 1
RACROUTE REQUEST=AUDIT (list form)
RACROUTE REQUEST=AUDIT (execute form)
RACROUTE REQUEST=AUDIT (modify form)
RACROUTE REQUEST=AUTH: Check RACF authorization
RACROUTE REQUEST=AUTH (standard form)
Return codes and reason codes
Class descriptor table (CDT) default return codes and reason codes
Example 1
Example 2
Example 3
Example 4
Example 5
Example 6
Example 7
RACROUTE REQUEST=AUTH (list form)
RACROUTE REQUEST=AUTH (execute form)
RACROUTE REQUEST=AUTH (modify form)
RACROUTE REQUEST=DEFINE: Define, modify, rename, or delete a resource for RACF
RACROUTE REQUEST=DEFINE (standard form)
Return codes and reason codes
Example 1
Example 2
Example 3
Example 4
Example 5
Example 6
RACROUTE REQUEST=DEFINE (list form)
RACROUTE REQUEST=DEFINE (execute form)
RACROUTE REQUEST=DEFINE (modify form)
RACROUTE REQUEST=DIRAUTH: Directed authorization check of security classification
RACROUTE REQUEST=DIRAUTH (standard form)
Return codes and reason codes
Example
RACROUTE REQUEST=DIRAUTH (list form)
RACROUTE REQUEST=DIRAUTH (execute form)
RACROUTE REQUEST=DIRAUTH (modify form)
RACROUTE REQUEST=EXTRACT: Replace or retrieve fields
RACROUTE REQUEST=EXTRACT (standard form)
Return codes and reason codes
Example 1
Example 2
Example 3
Example 4
RACROUTE REQUEST=EXTRACT (list form)
RACROUTE REQUEST=EXTRACT (execute form)
RACROUTE REQUEST=EXTRACT (modify form)
RACROUTE REQUEST=FASTAUTH: Verify access to resources
RACROUTE REQUEST=FASTAUTH (standard form)
Return codes and reason codes
Class descriptor table (CDT) default return codes and reason codes
RACROUTE REQUEST=FASTAUTH (list form)
RACROUTE REQUEST=FASTAUTH (execute form)
RACROUTE REQUEST=LIST: Build in-storage profiles
RACROUTE REQUEST=LIST (standard form)
Return codes and reason codes
Example 1
Example 2
Example 3
Example 4
Example 5
RACROUTE REQUEST=LIST (list form)
RACROUTE REQUEST=LIST (execute form)
RACROUTE REQUEST=LIST (modify form)
RACROUTE REQUEST=SIGNON: Manage PV signed-on lists
RACROUTE REQUEST=SIGNON (standard form)
Return codes and reason codes
Example 1
Example 2
Example 3
RACROUTE REQUEST=SIGNON (list form)
RACROUTE REQUEST=SIGNON (execute form)
RACROUTE REQUEST=SIGNON (modify form)
RACROUTE REQUEST=STAT: Determine RACF Status
RACROUTE REQUEST=STAT (standard form)
Return codes and reason codes
Example 1
Example 2
Example 3
Example 4
RACROUTE REQUEST=STAT (list form)
RACROUTE REQUEST=STAT (execute form)
RACROUTE REQUEST=STAT (modify form)
RACROUTE REQUEST=TOKENBLD: Build a UTOKEN
RACROUTE REQUEST=TOKENBLD (standard form)
Return codes and reason codes
Example
RACROUTE REQUEST=TOKENBLD (list form)
RACROUTE REQUEST=TOKENBLD (execute form)
RACROUTE REQUEST=TOKENBLD (modify form)
RACROUTE REQUEST=TOKENMAP: Access token fields
RACROUTE REQUEST=TOKENMAP (standard form)
Return codes and reason codes
Example
RACROUTE REQUEST=TOKENMAP (list form)
RACROUTE REQUEST=TOKENMAP (execute form)
RACROUTE REQUEST=TOKENMAP (modify form)
RACROUTE REQUEST=TOKENXTR: Extract UTOKENs
RACROUTE REQUEST=TOKENXTR (standard form)
Return codes and reason codes
Example
RACROUTE REQUEST=TOKENXTR (list form)
RACROUTE REQUEST=TOKENXTR (execute form)
RACROUTE REQUEST=TOKENXTR (modify form)
RACROUTE REQUEST=VERIFY: Identify and verify a RACF-defined user
RACROUTE REQUEST=VERIFY (standard form)
Guidelines for changing or deleting an ACEE
Return codes and reason codes
Example 1
Example 2
Example 3
RACROUTE REQUEST=VERIFY (list form)
RACROUTE REQUEST=VERIFY (execute form)
RACROUTE REQUEST=VERIFY (modify form)
RACROUTE REQUEST=VERIFYX: Verify user and return a UTOKEN
RACROUTE REQUEST=VERIFYX (standard form)
Return codes and reason codes
Example 1
RACROUTE REQUEST=VERIFYX (list form)
RACROUTE REQUEST=VERIFYX (execute form)
RACROUTE REQUEST=VERIFYX (modify form)
Independent RACF system macros
FRACHECK macro
FRACHECK (standard form)
Parameters for RELEASE=1.6 through 1.8.1
Return codes and reason codes
FRACHECK (list form)
FRACHECK (execute form)
RACDEF: Define a resource to RACF
RACDEF (standard form)
Parameters for RELEASE=1.6 through 1.8.1
Return codes and reason codes
Example 1
Example 2
Example 3
Example 4
Example 5
Example 6
RACDEF (list form)
RACDEF (execute form)
RACHECK: Check RACF authorization
RACHECK (standard form)
Parameters for RELEASE=1.6 through 1.8.2
Return codes and reason codes
Example 1
Example 2
Example 3
Example 4
Example 5
Example 6
Example 7
Example 8
RACHECK (list form)
RACHECK (execute form)
RACINIT: Identify a RACF-defined user
RACINIT (standard form)
Parameters for RELEASE=1.6 through 1.8.1
Guidelines for changing or deleting an ACEE
Return codes and reason codes
Example 1
Example 2
Example 3
RACINIT (list form)
RACINIT (execute form)
RACLIST: Build in-storage profiles
RACLIST (standard form)
Parameters for RELEASE=1.6 through 1.8.1
Return codes and reason codes
Example 1
Example 2
Example 3
RACLIST (list form)
RACLIST (execute form)
RACSTAT macro
RACSTAT macro (standard form)
Parameters for RELEASE=1.6 through 1.8.1
Return codes
Example 1
RACSTAT (list form)
RACSTAT (execute form)
RACXTRT macro (standard form)
Parameters for RELEASE=1.6 through 1.8.1
Return codes and reason codes
RACXTRT (list form)
RACXTRT (execute form)
RACF database templates
Format of field definitions
Repeat groups on the RACF database
Field length
Data field types
Date fields
Time fields
Integer fields
Character fields
Combination fields on the RACF database
Determining space requirements for the profiles
Determining space requirements for alias index entries
Group template for the RACF database
User template for the RACF database
Connect template for the RACF database
Data set template for the RACF database
General template for the RACF database
Reserved template for the RACF database
System authorization facility (SAF) and SAF exits
System authorization facility (SAF)
Exit routine environment
Exit routine processing
Programming considerations
SAF router exit
SAF exits (ICHRTX00 and ICHRTX01)
Considerations
SAF router exits (ICHRTX00 and ICHRTX01)
Return codes from the SAF router exits (ICHRTX00 and ICHRTX01)
Exit routine processing
Exit routine requirements
Simulating a call to RACF
JES handling of the return codes from SAF
SAF callable services router installation exit (IRRSXT00)
SAF interface to an external security product
Security product router
Requirements for the security product router
Input parameters to the security product router
Exit conditions from the security product router
Programming considerations
SAF Callable Services Router Installation exit (IRRSXT00) for z/OS UNIX callable services
Supplied class descriptor table entries
Requesting security services
Copyright IBM Corporation 1990, 2014