z/OS Security Server RACF Security Administrator's Guide
Previous topic | Next topic | Contents | Contact z/OS | Library | PDF


Using IRRDBU00 with universal groups

z/OS Security Server RACF Security Administrator's Guide
SA23-2289-00

Using the output from IRRDBU00 is the best way to list the members of a universal group, because a complete member list for a universal group might not be obtained from a LISTGRP command. You can use DB2® to process the output of IRRDBU00 to generate a list of universal groups and to list the members of each universal group by using samples available in SYS1.SAMPLIB. See Using the database unload utility output with DB2 for more information. Sample RACFICE reports called GPRM and CUG$ are also available to assist you. See Reports based on the database unload utility (IRRDBU00).

Note that IRRDBU00 does not unload a Group Members data record (0102) for every user connected to a universal group. Only users who are listed in the group's member list (users with group-level user attributes, such as group-SPECIAL, or group authority higher than USE) have 0102 records.

For more information about universal groups, see Defining large groups with the UNIVERSAL attribute.

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014