Password configuration matrix
After you select the suitable password-handling method, follow this configuration matrix to set the password keywords and parameters.
Proceed as indicated by the step number.
| Step | Profile/Action | Parameter | Password | ||
|---|---|---|---|---|---|
| No | Manual | Set by IBM Storage Protect™ | |||
| 1 | IBM Storage Protect admin | AUTHENTICATION EXPIRATION PERIOD (see note 1) | OFF | ON n days (see note 2) | ON n days |
| 2 | dsm.sys | PASSWORDACCESS PASSWORDDIR (see note 5) NODENAME |
Unavailable | PROMPT Unavailable Unavailable . |
GENERATE path nodename |
| 3 | IBM Storage Protect admin | UPDATE NODE (see notes 1, 6) | Unavailable | password | password |
| 4 | Data Protection for SAP profile (initSID.utl) | For each SERVER statement, specify: PASSWORDREQUIRED ADSMNODE |
NO nodename |
YES nodename |
NO (see note 4) |
| 5 | Data Protection for SAP command line | Specify in each SERVER statement: |
Unavailable | password (See notes 3,7,8) | password (See notes 3,7,8) |
| 6 | Command line | backom -c password |
Unavailable | password (See notes 3, 7) | password (See notes 3, 7 |
| 6 | Command line | backom -c password |
Unavailable | password (See notes 3, 7) | password (See notes 3, 7) |
Note:
- See appropriate IBM Storage Protect documentation.
- If you are using manual password generation during testing, make sure that the expiration period is set to an appropriate time.
- This password must be the one that is effective on the IBM Storage Protect server for the node.
- ADSMNODE must not be set when PASSWORDACCESS generate is set.
- The users
SIDadmanddb2SIDoraSIDmust have read and write permission for thepathspecified in thePASSWORDDIRoption in the IBM Storage Protect client options file. - This step is only necessary if the password is expired (manual-handling only) or must be changed on the IBM Storage Protect server.
- A password must be entered for each server statement in the Data Protection for SAP profile.
- When you use Oracle RMAN with
PASSWORDACCESS GENERATE, backups must always be started with the same user ID provided in step 5 (setting of passwords). - When you use
PASSWORDACCESS GENERATE, the operations must always be used with the same user ID provided in step 5 (setting of passwords).