Profiles to control subsystem security
IBM® MQ checks whether subsystem security checks are required for the subsystem, for the queue manager, and for the queue sharing group.
The first security check made by IBM MQ is used to determine whether security checks are required for the whole IBM MQ subsystem. If you specify that you do not want subsystem security, no further checks are made.
The following switch profiles are checked to determine whether subsystem security is required. Figure 1 shows the order in which they are checked.
Switch profile name | Type of resource or checking that is controlled |
---|---|
qmgr-name.NO.SUBSYS.SECURITY | Subsystem security for this queue manager |
qsg-name.NO.SUBSYS.SECURITY | Subsystem security for this queue sharing group |
qmgr-name.YES.SUBSYS.SECURITY | Subsystem security override for this queue manager |
If your queue manager is not a member of a queue sharing group, IBM MQ checks for the qmgr-name.NO.SUBSYS.SECURITY switch profile only.