Security definitions

To create the security definitions for z/OS® Explorer, customize and submit the sample FEKRACF member. The user submitting this job must have security administrator privileges, such as being RACF® SPECIAL.

FEKRACF is located in FEK.#CUST.JCL, unless you specified a different location when you customized and submitted the FEK.SFEKSAMP(FEKSETUP) job. For more details, see Customization setup.

Note:
  • For those sites that use CA ACF2TM for z/OS, see the product page on the CA support site (https://support.broadcom.com) and check for the related IBM Rational Developer for System z Knowledge Document, TEC492389. This Knowledge Document has details on the security commands that are necessary to properly configure z/OS Explorer, as z/OS Explorer has the same requirements as Rational Developer for System z.
  • For those sites that use CA Top Secret® for z/OS, see the product page on the CA support site (https://support.broadcom.com) and check for the related IBM Rational Developer for System z Knowledge Document, TEC492091. This Knowledge Document has details on the security commands necessary to properly configure z/OS Explorer, as z/OS Explorer has the same requirements as Rational Developer for System z.
The following list of security-related definitions for z/OS Explorer are discussed in detail in Security definitions.
  • Activate security settings and classes
  • Define an OMVS segment for z/OS Explorer users
  • Define the z/OS Explorer started tasks
  • Define RSE as a secure z/OS UNIX server
  • Define MVS™ program controlled libraries for RSE
  • Define PassTicket support for RSE
  • Define application security for RSE
  • Define z/OS UNIX file access permission for RSE
  • Define JES command security
  • Define data set profiles
Attention: The client connection request will fail if PassTickets are not set up correctly.