Security setup for IMS Administration Tool

If you want to use the IMS Administration Tool from IMS Administration Foundation, you need to ensure that the security setup is completed for the IMS Administration Tool and the UMS super administrator who will be registering the IMS data sharing group has access to the services provided by the IMS Administration Tool.

The following security requirements must be met to use the IMS Administration Tool:
  • The default UMS DBA user ID and all UMS users who are planning to use the IMS Administration Tool features including RECON ID creation and IMS registration during the IMS data sharing group registration must have READ access to the profile ATYADMIN.ACCESS in the RACF FACILITY class.
  • If the profile ATYADMIN.SETUP is created in the RACF FACILITY class, the default UMS DBA user ID and the administration user who will be registering the IMS data sharing group must have READ access to the profile.

For details on the security setup, see Secure the IMS Administration Tool functions in the IBM® IMS Administration Tool for z/OS® User Guide and Reference. For details on the other setup required for IMS Administration Tool, see Product configuration in the IBM IMS Administration Tool for z/OS User Guide and Reference.

If IMS Administration Tool is used for IMS Administration Foundation, job logs of some of the IMS system address spaces for IMS subsystems that belong to an IMS data sharing group that is to be registered by IMS Administration Foundation are accessed from the auxiliary address space of the Zowe cross-memory server during the IMS data sharing group registration process. For details on the security requirements, see Security setup for the auxiliary address space of Zowe cross-memory server.