Auditing PSF printing

PSF uses the SMF type 6 record to audit certain events that can indicate a security exception. Only one record is written per data set, but the record can contain numerous conditions.

The following information is included in the SMF type 6 record to support print labeling:
  • Indicator that flags JCL keywords that are in effect during printing.
  • Indicator that flags a successful print operation.
  • Indicator that flags an error that occurred during overlay processing.
  • Indicator that flags a hardware error that occurred.
  • Indicator that flags printed job-trailer pages.
  • Indicator that flags printed job-header pages.
  • Indicator that flags that the user suppressed data-page labeling.
  • Indicator that flags that the user suppressed UPA enforcement.
  • Identifier for the job or group identifier for the data set.
  • Identifier for the page definition name.
  • Identifier for the form definition name.
  • Identifier for the number of security overlays that are used.
  • Identifier for the number of security fonts that are used.
  • Identifier for the number of security page segments that are used.

For more information about the SMF type 6 record that PSF generates, see PSF for z/OS: Customization.