z/OS commands
By default, Take Action commands that are issued by OMEGAMON for Db2® PE through the Tivoli® Enterprise Portal are issued as z/OS® system commands.
In IBM® Tivoli Monitoring 6.3.0, you can enable SAF and RACF® authorization of Take Action commands and authorize the use of Take Action commands by selected portal server users (Tivoli Enterprise Portal user ID). You can restrict others from issuing Take Action commands.
You can secure Tivoli Enterprise Portal user IDs or the RACF groups that the user IDs are in by
using standard security objects that are provided by the security
product at your site. For more information, see:
- Configuring Take Action command access using SAF profiles in the OMEGAMON shared documentation.
- Enable RACF authorization of Take Action commands in the OMEGAMON shared documentation.
With IBM Tivoli Monitoring 6.3.0, Tivoli Management Services provides an
auditing function that captures information about significant events
that occur in your IBM Tivoli Monitoring
environment, including those events that allow or disallow the
execution of Take Action commands. On a z/OS system, the auditing
facility creates and stores information in Systems Management Facility
(SMF) format records. For more information, see:
- Configuring Take Action command access using SAF profiles in the OMEGAMON shared documentation.
- IBM Tivoli Monitoring: Tivoli Enterprise Portal User's Guide
Although the preferred configuration method is to use the RACF authorization and SMF auditing
facilities to issue Take Action commands, you can also configure a
monitoring server or monitoring agent address space to redirect Take
Action commands to NetView® through the Program to Program Interface
(PPI). For more information about configuring IBM Z NetView® authorization of z/OS
commands, see:
- Enable IBM Z NetView to authorize Take Action commands in the OMEGAMON shared documentation.